Description-Behavior Mismatch
Medium
- Confidence
- 91% confidence
- Finding
- The skill’s stated purpose is to run an interactive debate, but it also defines direct access to a local SQLite database and an external CLI for Notion. This expands the skill’s capabilities beyond what a user would reasonably expect, increasing the risk of unintended data access or exfiltration if the skill is invoked in normal use.
