Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- The skill documentation instructs users to bypass the declared MCP interface and run custom Node.js code that pulls credentials from a local config file and uses hardcoded OAuth/account identifiers. That expands the skill's effective capability from normal LinkedIn actions into local secret handling and arbitrary code execution patterns, increasing the chance of credential exposure, misuse of Pipedream access, or unsafe copy/paste execution.
