Context-Inappropriate Capability
Medium
- Confidence
- 97% confidence
- Finding
- The skill instructs the agent to run host/network diagnostic commands (`ifconfig`, `ip addr`, external IP checks) that are not necessary to answer a wallet analytics request and expand access into local system reconnaissance. This can disclose network configuration and public IP information to the model or user, increasing privacy and environment-enumeration risk beyond the stated purpose of portfolio analysis.
