Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- The skill explicitly instructs the agent to append to persistent logs and to modify multiple local rule and memory files as part of normal operation. That behavior exceeds what is necessary for a persona/avatar skill and creates integrity and privacy risk by allowing user conversations to be retained and the skill’s future behavior to change over time without explicit authorization.
