Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- The skill instructs the agent/user to configure and launch an external `npx`-based protocol service, which expands the trust boundary from static diagram generation to arbitrary package retrieval and local command execution. Even if intended for legitimate connector setup, using `npx -y` can fetch and run remote code at install/runtime, creating supply-chain and execution risk beyond the advertised skill purpose.
