Context-Inappropriate Capability
Medium
- Confidence
- 90% confidence
- Finding
- This skill explicitly provides a cron pattern that sends autonomous WhatsApp alerts to a hard-coded external phone number. That exceeds passive behavior guidance and creates a real capability for unreviewed outbound communications, which can leak sensitive information, spam a recipient, or trigger actions outside the user's current consent.
