Context-Inappropriate Capability
Medium
- Confidence
- 82% confidence
- Finding
- The skill processes untrusted `.doc` files by launching an external utility (`antiword`). Even without shell injection, this expands the attack surface to vulnerabilities in the installed system binary and can expose the host to parser bugs, crashes, or malicious document-triggered exploitation; in an agent skill that may handle user-supplied documents, that context makes the risk more meaningful.
