AI agents are gaining access to real capabilities: reading files, running commands, calling APIs, connecting to MCP servers, and combining those tools under natural-language instructions. At the same time, Agent Skills are still installed like documentation. In many projects, a skill is a Markdown file copied into a directory or referenced by a URL. That file can also contain executable scripts, credential access patterns, network requests, and instructions designed to override the agent...