Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The skill expands from a navigation reasoning aid into instructions for persistent memory writes and even self-modification of skills. This is dangerous because it authorizes stateful data storage and code/documentation changes without clear approval boundaries, enabling unintended persistence, prompt drift, or unsafe evolution of agent behavior across sessions.
