Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- The skill instructs the agent to clone executable code from a remote GitHub repository at runtime and then copy a parser file into the working directory. This introduces a supply-chain risk because the fetched code can change over time, is outside the reviewed skill contents, and may execute unexpected or unsafe logic when imported or used.
