Context-Inappropriate Capability
Medium
- Confidence
- 91% confidence
- Finding
- The installer creates persistent automation via cron and immediately runs the indexer, causing ongoing host changes beyond a one-time local install. In a memory-search skill, automatic recurring indexing may be functionally related, but it still introduces persistence and repeated execution without explicit user consent or visibility, which increases risk if the indexer later changes or handles sensitive data.
