Vague Triggers
Medium
- Confidence
- 84% confidence
- Finding
- The README encourages broad natural-language commands like "Show me my Canva designs" and "Upload this image to Canva" without defining confirmation, scope, or trigger boundaries. In an agent setting, vague invocation guidance can cause unintended access to remote account data, exports, or uploads when the assistant over-interprets user intent.
