Context-Inappropriate Capability
Medium
- Confidence
- 88% confidence
- Finding
- The skill advertises itself as an instruction-driven local analysis framework with no extra API key or external tooling, yet it accepts a callback_url for asynchronous completion. That creates an undocumented outbound data flow risk because user-supplied analysis content could be transmitted to an external endpoint, which is especially sensitive in an AI-agent context handling proprietary protocol details.
