Context-Inappropriate Capability
Medium
- Confidence
- 89% confidence
- Finding
- The manifest declares a dependency on `curl`, which enables arbitrary outbound network access even though the stated purpose is local budget planning. In a finance-related skill, this increases the risk of transmitting sensitive spending or income data to external services without a clear functional justification, making the dependency suspicious and potentially dangerous.
