Context-Inappropriate Capability
Medium
- Confidence
- 97% confidence
- Finding
- This is a real issue. The skill does not just verify endpoint authenticity; it includes an optional subsystem specifically designed to induce disclosure of hidden system prompts and internal instructions from third-party providers. That materially expands the capability from diagnostic verification into active prompt-extraction, which can expose confidential provider policies, internal guardrails, or proprietary prompt engineering.
