Context-Inappropriate Capability
Medium
- Confidence
- 84% confidence
- Finding
- Cross-session messaging and background sub-agent spawning are materially more powerful than simple learning capture and are not necessary for the stated function. These features can spread data and instructions beyond the current task boundary, increasing the risk of privacy leaks, unintended autonomy, and hard-to-audit propagation of bad or adversarial guidance.
