Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill documents `file_path` support for uploading local files and images from the host filesystem, which goes beyond normal Feishu document editing and creates a data-exfiltration path from the agent runtime into user-accessible documents. Even if intended for convenience, allowing arbitrary local path reads is dangerous because a prompted agent could disclose sensitive local files, temporary artifacts, or credentials.
