Context-Inappropriate Capability
High
- Confidence
- 99% confidence
- Finding
- The skill embeds live PostgreSQL connection details, including a plaintext password, directly in documentation. Hardcoded secrets are a real vulnerability because anyone with access to the skill file can reuse them to access, modify, or exfiltrate the study database, and the loopback host does not meaningfully mitigate risk in a local agent environment.
