Context-Inappropriate Capability
Medium
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to create scheduled Telegram cron jobs, which expands from tax advice into autonomous external messaging and task scheduling. That creates an unnecessary outbound communication channel and persistence mechanism that could leak sensitive tax deadlines or financial context, send unwanted reminders, or be repurposed for broader automation without explicit per-action user consent.
