Context-Inappropriate Capability
Medium
- Confidence
- 89% confidence
- Finding
- The skill goes beyond generating a local folder and instructs the agent to publish outputs to ClawHub and distribute them via public repositories. External publication is a materially different and higher-risk action than local generation because it can leak proprietary strategy logic, publish unsafe code, or create supply-chain exposure if done automatically or on insufficient review.
