Context-Inappropriate Capability
Medium
- Confidence
- 90% confidence
- Finding
- The script advertised for agent creation also scaffolds cron-job files and explicitly instructs users to copy them into the global scheduler directory, expanding its effective capability beyond simple agent setup. In an agent-management context, this broadens the trust boundary and can normalize persistence or scheduled execution paths that are not clearly separated from basic provisioning, increasing the chance of unintended code execution later.
