Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- The skill instructs the agent to read repo-specific memory and prior artifacts from a persistent directory under ~/Clawic/data/vscode before performing debugging work. That creates cross-task data access outside the immediate user request and can expose unrelated project metadata, path mappings, ports, and other sensitive context from previous engagements. In a VSCode troubleshooting skill, this is not necessary to fulfill the stated purpose and increases the risk of unauthorized data reuse.
