Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- The skill reads persistent Google Voice session cookies from a fixed filesystem path and injects them into a browser session, effectively reusing stored authentication material without any visible consent, scoping, or secret-management controls. In the context of a tool that places outbound calls, this enables account misuse and unauthorized actions if the cookies belong to another user or are unexpectedly present in the shared workspace.
