Context-Inappropriate Capability
Medium
- Confidence
- 89% confidence
- Finding
- The skill instructs the agent to obtain anonymous service tokens and use remote account/credit functionality even when the user has not explicitly consented to external service authentication. This broadens the skill from local advice/compression assistance into silent third-party service access, which can create unanticipated account creation, credit consumption, tracking, and policy bypass risks.
