Context-Inappropriate Capability
Medium
- Confidence
- 86% confidence
- Finding
- The skill documentation exposes an admin-only review endpoint, including the ability to approve/reject submissions and assign points, even though the skill is presented as a general agent job-board integration. Documenting privileged operations in a broadly consumable skill increases the chance that an agent will request, store, or misuse elevated credentials, expanding the blast radius if secrets are mishandled.
