Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The `extract` command extends a memory-management CLI into generating new skill artifacts from stored lessons, which materially changes its trust boundary and capabilities. In a long-term memory system, turning stored content into executable/operational agent skills is dangerous because remembered content may be untrusted or prompt-injected, and this feature enables persistence and reuse of that content in a more privileged form.
