Vague Triggers
Medium
- Confidence
- 87% confidence
- Finding
- The skill is explicitly designed as a general-purpose OS-level desktop automation interface for 'any application,' which makes it broadly invocable across many unrelated contexts. That broad applicability is dangerous because it can be leveraged to drive sensitive GUI actions outside the user's original intent, especially since the skill includes typing, clicking, window focus, browser control, and agent delegation capabilities.
