Context-Inappropriate Capability
Low
- Confidence
- 89% confidence
- Finding
- resolvePublicUrlFromSource accepts arbitrary http:// URLs and passes them through as valid remote sources, despite the surrounding skill context emphasizing public HTTPS references. Allowing plaintext HTTP enables man-in-the-middle tampering, content substitution, and metadata leakage when media is fetched over untrusted networks, which is especially risky for a media-generation workflow that may consume attacker-controlled external resources.
