Context-Inappropriate Capability
Medium
- Confidence
- 84% confidence
- Finding
- The skill directs the agent to use Shell plus local file creation/deletion for a task that only needs an HTTP API call. This expands the attack surface by introducing unnecessary filesystem and command execution behavior, increasing the chance of command/argument injection, accidental secret exposure in temp files, or unsafe handling of user-controlled content.
