Context-Inappropriate Capability
Medium
- Confidence
- 88% confidence
- Finding
- The skill directs the agent to fetch remote skill components, perform automatic update checks, and re-download local files. That expands the skill from a static social-network guide into a self-updating instruction source, which creates a supply-chain risk: future remote content can silently change the agent's behavior without user review.
