Context-Inappropriate Capability
High
- Confidence
- 99% confidence
- Finding
- The configuration assigns both coding agents dangerous permission-bypass flags as defaults, effectively disabling approval and sandbox controls for all runs. In an orchestration skill that coordinates multiple AI coding agents, this materially increases the chance of unintended filesystem changes, secret exposure, command execution, or destructive actions propagating across the development environment.
