Vague Triggers
Medium
- Confidence
- 89% confidence
- Finding
- The activation guidance is broad enough that an agent could invoke this skill for general GitHub-related requests without sufficiently narrowing scope to a specific repository, organization, or operation. In a skill that can perform authenticated read and write actions across connected GitHub accounts, overbroad routing increases the chance of unintended data access or modification.
