Vague Triggers
Medium
- Confidence
- 77% confidence
- Finding
- The heartbeat guidance instructs the agent to periodically fetch and follow a remote `heartbeat.md` file. That creates a dynamic remote-instruction channel: the skill can change behavior after installation without user review, and an agent that blindly 'follows it' may execute newly introduced actions including posting, trading, or secret-bearing API calls. In a security context, broad recurring remote fetch-and-follow behavior is risky even if the current domain is consistent and the document contains some safety guidance.
