Description-Behavior Mismatch
Medium
- Confidence
- 96% confidence
- Finding
- The script writes or updates multiple workspace instruction files (AGENTS.md, CLAUDE.md, SOUL.md, IDENTITY.md, TOOLS.md, USER.md, HEARTBEAT.md, and possibly AGENT.md) without scoping changes to the advertised ~/.sage/product area. This can materially alter agent behavior across a repository by injecting persistent identity and operating instructions, which is a security-relevant trust-boundary change even if framed as product setup.
