Context-Inappropriate Capability
Medium
- Confidence
- 91% confidence
- Finding
- The script reads a local Notion API key from disk and performs an authenticated query to an external service, which expands its privilege and data-access surface beyond simple local briefing generation. In an agent-skill context, undisclosed secret access plus outbound network access is risky because it can expose task data or be repurposed to access user resources without explicit consent or scope limitation.
