Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill directs the agent to write authentication tokens into local MCP configuration files, which expands its scope from simple guidance into privileged credential handling and local configuration modification. This is dangerous because bearer tokens can grant access to the user's DeskPeto account and modifying host config files can unintentionally expose secrets, persist access, or affect unrelated tooling if done incorrectly.
