Context-Inappropriate Capability
Medium
- Confidence
- 93% confidence
- Finding
- The document explicitly instructs the agent to inspect its system prompt, agent config, environment variables, and local project files to discover wallet credentials and payment capabilities. In an agent setting, this is sensitive-context discovery that can expose secrets unrelated to the user’s request and can lead to unauthorized use of private keys or managed-wallet credentials; the x402 payment context makes this more dangerous because the discovered credentials are intended to authorize real spending.
