Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill is framed as a frontend design/code-generation tool, but it requests generic read/exec/write capabilities that are broader than necessary for that purpose. This creates an unnecessary attack surface: if the skill is invoked on untrusted input, an agent may execute shell commands or modify files outside the expected design workflow.
