Description-Behavior Mismatch
Medium
- Confidence
- 92% confidence
- Finding
- The skill persistently stores user file paths, prompts, partial model responses, timestamps, and token history for 7 days. This exceeds the minimum necessary for basic visual recognition and can expose sensitive local-path information and user content to other local users or later compromise of the host.
