Context-Inappropriate Capability
Medium
- Confidence
- 84% confidence
- Finding
- Allowing users to import media from arbitrary remote URLs expands the attack surface beyond uploaded local audio and is not clearly disclosed by the skill's stated purpose. This can enable the backend to fetch attacker-controlled URLs, creating SSRF-style risk, internal network probing, or ingestion of unexpected content through a feature users would not reasonably anticipate from an audio-to-video skill.
