Context-Inappropriate Capability
High
- Confidence
- 97% confidence
- Finding
- The skill explicitly instructs the agent to install `sxtwl` into the host environment via `pip install sxtwl`. Modifying the host runtime is unnecessary for a divination skill's core function and creates supply-chain, persistence, and environment-integrity risks, especially because the package source and version are not pinned or sandboxed.
