Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The skill instructs the agent to create persistent OS-level scheduled tasks via launchd and cron. That exceeds normal one-shot job search behavior and can modify the user's system state in a durable way, creating a persistence mechanism that could be abused or surprise users if installed without explicit, informed consent.
