Context-Inappropriate Capability
High
- Confidence
- 99% confidence
- Finding
- The skill explicitly instructs the agent to ask users to paste ACCESS_KEY_ID and SECRET_ACCESS_KEY into chat and then export them into the runtime environment. Requesting long-lived cloud credentials in-band is highly dangerous because chat logs, tool traces, or downstream scripts may expose or misuse those secrets beyond the narrow subtitle task.
