Vague Triggers
Medium
- Confidence
- 85% confidence
- Finding
- The instruction text tells an agent to open a local project directory and then continue processing based on a future user request, without defining scope boundaries or allowed follow-up actions. In an agentic environment, this broad handoff can enable unintended file enumeration, disclosure of sensitive project contents, or unsafe downstream actions if later prompts are ambiguous or malicious.
