Vague Triggers
Medium
- Confidence
- 86% confidence
- Finding
- The skill advertises very broad activation keywords, including generic terms like 'compress' and 'archive format', which can cause the skill to be invoked in contexts where the user did not intend to upload or transform files through this remote service. Because this skill transmits file contents to external cloud storage and returns signed URLs, accidental invocation increases the risk of unintended data disclosure and misuse.
