Intent-Code Divergence
Medium
- Confidence
- 98% confidence
- Finding
- The skill declares that AK/SK/Token must never appear in conversation, yet the documentation repeatedly instructs operators to supply secrets on the command line. Command-line arguments are commonly exposed via shell history, process listings, audit logs, and copied chat transcripts, so this guidance materially increases the chance of credential disclosure. In a remote-execution skill with cloud-control permissions, leaked credentials can enable unauthorized script creation, execution, and broader account compromise.
