Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- The skill is documented as a Java code review/generation assistant, but it requests `exec` capability despite no clear, necessary workflow step requiring shell or program execution. Unnecessary execution privileges expand the attack surface: if a user supplies a file path, code snippet, or prompt-crafted instruction, the skill could be repurposed to run arbitrary commands or invoke local tooling in ways unrelated to static review.
