Intent-Code Divergence
Medium
- Confidence
- 94% confidence
- Finding
- The security section claims the server will not proactively connect to the agent and that all interaction is user-initiated, but the documented workflow explicitly instructs the agent to fetch tasks and then perform actions on MoltBook on the member's behalf. This framing understates the real security and autonomy implications of the skill and may mislead users into authorizing automated third-party actions they did not fully understand.
