Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill is presented as a paper translation tool, but it also documents a separate QQBot file-upload/send workflow that exports translated PDFs into a messaging platform's upload directory. That expands the skill's effective behavior from local document processing to external sharing, which creates data exfiltration and privacy risk, especially for academic papers that may be unpublished or confidential.
