Context-Inappropriate Capability
Medium
- Confidence
- 93% confidence
- Finding
- When --ensure-bridge is used, the script executes the user-supplied BRIDGE_CMD via `bash -lc` under `nohup`, which allows arbitrary shell command execution in the local environment. In a data-collection helper, this exceeds the minimum required capability and becomes dangerous if an upstream agent, workflow, or untrusted input can influence that argument.
