Context-Inappropriate Capability
Medium
- Confidence
- 87% confidence
- Finding
- The skill documents ReAct patterns that explicitly map reasoning steps to tool calls such as web_search/read/exec/browser, expanding a prompt-engineering skill into actionable tool-invocation guidance. That can encourage downstream agents to perform external actions or code execution without clearly scoping permissions, approvals, or safety gates, increasing the risk of overbroad tool use and prompt-to-action escalation.
