Context-Inappropriate Capability
Medium
- Confidence
- 88% confidence
- Finding
- The V9 scheme documents SSH-based service stop/copy/restore operations against production-like state, which exceeds passive web UI verification and introduces infrastructure-level destructive capability. In the context of an agent skill, normalizing direct DB file manipulation and service interruption can lead to accidental misuse against live environments, data loss, or unauthorized state tampering if the workflow is invoked without strict environment gating.
