Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- This code implicitly reads AWS bearer tokens or IAM-derived credentials from the environment and then performs remote model discovery without an explicit user action or visible authorization boundary in this file. Even if intended for convenience, automatic credential use plus outbound requests can surprise users, expand trust scope, and expose account metadata or enable unintended access paths.
