Vague Triggers
Medium
- Confidence
- 90% confidence
- Finding
- The trigger phrase “帮我做一次全面的安全审计” is broad natural-language activation with no scoping, confirmation, or authorization checks. In this skill, activation would lead to host reconnaissance and access to sensitive files, logs, network state, and possibly secrets, so accidental or prompt-induced invocation could expose sensitive system information.
