Context-Inappropriate Capability
Medium
- Confidence
- 87% confidence
- Finding
- The skill can send external alerts on failure even though its stated purpose is only local A/B model comparison. That creates an unnecessary outbound communication path that could leak error details or be abused as an exfiltration/notification channel, especially since the alert includes the raw error message.
