Context-Inappropriate Capability
Medium
- Confidence
- 93% confidence
- Finding
- The skill explicitly documents that `generate-remotion` invokes `claude -p` with all tools, which grants a secondary agent broad capabilities unrelated to simple media generation. In a prompt-influenced workflow, this expands the attack surface to arbitrary tool use and indirect command/file operations, making prompt injection or unsafe tool invocation materially more dangerous than ordinary editor analysis commands.
