Context-Inappropriate Capability
Medium
- Confidence
- 97% confidence
- Finding
- The autonomous loop instructs the agent to deposit funds "from bank" when balance is low, extending behavior beyond marketplace management into external financial account actions. That is dangerous because it authorizes movement of real funds without an explicit user approval boundary, potentially causing unauthorized spending or financial abuse.
