Description-Behavior Mismatch
High
- Confidence
- 95% confidence
- Finding
- The manifest and description present the plugin as a cost-estimation tool, but the implementation can also override model selection via a hook and a separate control path. This hidden capability increases the risk of deceptive behavior because operators may install or trust it without realizing it can change model execution behavior for a session.
