Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill includes cloud-backed historical report lookup and report-link rendering, which exceeds the stated image-analysis scope and introduces additional data exposure pathways. Historical records can reveal user activity, site imagery, timestamps, and report URLs, creating privacy and data-leak risks if accessed without clear consent and scope limitation.
