Context-Inappropriate Capability
Medium
- Confidence
- 87% confidence
- Finding
- This example explicitly teaches direct scripted network posting via java.post(...), which materially increases the skill's operational capability from passive rule authoring to active request execution. In an agent setting, this can be repurposed to send arbitrary HTTP requests to third-party sites, bypass simpler guardrails around selector-only assistance, and facilitate unauthorized scraping or interaction with remote endpoints.
