Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- The script falls back to reading an API key from the agent's unrelated memorySearch.remote configuration if it sees a SiliconFlow base URL. This mixes trust boundaries and can cause the image-generation skill to silently reuse credentials intended for another subsystem, increasing the chance of credential misuse, unintended billing, and cross-component data access.
