Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- The skill instructs the agent to persist and reuse highly sensitive personal data (birth date, birth time, sex, optional birthplace, plus derived profile data) in MEMORY.md beyond the immediate request. It also normalizes silent reuse of that data without a fresh consent or necessity check, creating a privacy and scope-expansion risk that exceeds a simple one-shot fortune analysis workflow.
