Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The skill instructs the agent to persist full legal name and birth date, which are sensitive personal identifiers, in MEMORY.md for later reuse. Storing and reusing this data exceeds what is necessary for a single numerology response and creates avoidable privacy risk if the workspace, logs, or related skills can access the file.
