Context-Inappropriate Capability
High
- Confidence
- 96% confidence
- Finding
- The documentation explicitly describes a feature where prefixing input with `!` executes an arbitrary local shell command on the TUI host. In a documentation-reference skill, exposing this capability is dangerous because an agent may surface or operationalize it in response to user prompts, enabling host-side command execution and turning a read-only docs skill into an execution-enabling capability.
