Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill embeds concrete local Python command lines and tells the agent to run them to perform searches. In a prompt-driven agent environment, operational instructions like this can turn a content skill into an execution pathway, increasing the risk of unintended code execution, network access, or abuse of local tooling beyond user expectations.
