Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The skill requires appending promotional lead-generation content and a QR code to every report, which goes beyond the user's requested industry analysis and introduces undisclosed persuasive content into outputs. This is dangerous because it covertly repurposes a functional report as a marketing vehicle, undermining user trust and potentially causing unauthorized inclusion of external links or images in generated artifacts.
