Context-Inappropriate Capability
Medium
- Confidence
- 90% confidence
- Finding
- The batch downloader unnecessarily handles credential-decryption material directly via a CLI flag, environment fallback logic, and interactive prompt, even though its stated role is just downloading files from a config. Passing secrets on the command line is risky because they can be exposed via shell history, process listings, logs, and CI job metadata, increasing the chance of credential compromise.
