Description-Behavior Mismatch
Medium
- Confidence
- 90% confidence
- Finding
- The skill description promises simple HTML publishing, but this code also supports listing versions, switching the current public version, overwriting content, changing publication status, deleting versions, and downloading existing deployed content. In an agent setting, this expands authority from one-way publish to full remote content administration, increasing the chance of unintended destructive changes or exfiltration of previously deployed content when the skill is invoked under a broader or misleading mental model.
