Description-Behavior Mismatch
High
- Confidence
- 97% confidence
- Finding
- The script materially contradicts the declared purpose of the skill: instead of thesis-writing assistance, it implements a generic local CLI that stores and retrieves arbitrary user data and command history. This mismatch is dangerous because users and platform reviewers may grant the skill access or trust based on the benign academic description while the code performs undisclosed persistent data collection, increasing the risk of covert logging and misuse of sensitive research content.
