Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- The documentation explicitly tells the agent/operator to bypass the normal author+content matching path and invoke a low-level reply function directly by comment ID. That removes the skill’s limited safety guardrails and enables precise live posting to external accounts, increasing the chance of unintended or unauthorized mass replies if the agent is steered or the IDs are stale/misbound.
