Context-Inappropriate Capability
Medium
- Confidence
- 89% confidence
- Finding
- The skill instructs the agent to use data from an indoor air adapter to potentially execute physical actions through other adapters, expanding scope beyond passive sensing into actuation. This creates a cross-skill privilege escalation path where a benign-looking sensor skill can influence user-affecting physical changes without a narrowly defined authorization boundary.
