Description-Behavior Mismatch
Medium
- Confidence
- 87% confidence
- Finding
- The document expands the skill's behavior to automatically invoke an additional diagram-generation skill and MCP service that are outside the core lesson-material generation scope described in the metadata. This kind of undocumented cross-skill delegation increases the effective privilege and attack surface of the skill, because a user invoking a teaching assistant may unknowingly trigger external tooling with its own capabilities and risks.
