Context-Inappropriate Capability
Medium
- Confidence
- 91% confidence
- Finding
- The probe goes beyond basic GPU telemetry and enumerates full command lines for GPU-associated processes by reading /proc/<pid>/cmdline (with a ps fallback). Command lines commonly contain sensitive data such as file paths, usernames, internal service names, model names, tokens, API keys, and credentials passed as CLI arguments, so collecting and exporting them increases privacy and secret-exposure risk without an obvious need for core GPU health monitoring.
