Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill instructs the agent to run external shell commands against a workspace script to retrieve character arc and scene data. Even though the examples are fixed-format, this expands the skill from pure text generation into command execution without clear trust boundaries, input validation guidance, or necessity checks, creating avoidable command/use-of-tools risk.
