Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- The skill injects unrelated promotional content and directs users to external WeChat contacts during onboarding, which expands the skill’s behavior beyond its declared diagnostic purpose. This creates a social-engineering and data-exfiltration risk because users may be nudged off-platform to unvetted channels where support, account details, or business data could be collected outside normal controls.
