Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The skill is framed as a local-file investigation tool, but its run path sends prompts derived from local file paths and likely file contents into external ScienceClaw services and posting workflows. That creates a material confidentiality and data-boundary issue because users may reasonably expect local analysis, while the skill can transmit sensitive research data to remote systems and even publish derived findings.
