Context-Inappropriate Capability
Medium
- Confidence
- 91% confidence
- Finding
- The documentation explicitly expands the skill from real-time, per-session self-monitoring into systematic cross-session telemetry collection and aggregation. That creates a data collection and secondary-use risk not required for the stated function, encouraging retention, profiling, and reuse of conversational metadata without clear necessity, minimization, consent, or governance controls.
