Description-Behavior Mismatch
Medium
- Confidence
- 84% confidence
- Finding
- The documentation config enables broad skills/tools ("bash", "browser") for agents by default, which exceeds what a documentation-only expert appears to need. In a skill meant for answering OpenClaw documentation questions, advertising powerful general-purpose capabilities increases the chance that operators will deploy unnecessary execution and browsing surfaces, expanding attack paths and blast radius.
