Vague Triggers
Medium
- Confidence
- 91% confidence
- Finding
- The skill is framed as a general-purpose autonomous self-improvement engine without clear trigger boundaries, exclusion conditions, or user-confirmation requirements. In a skill with shell, network, workspace read/write, and self-modifying behavior, broad activation criteria materially increase the chance of unintended execution against arbitrary repositories or contexts, leading to unauthorized code changes or dangerous autonomous actions.
