Description-Behavior Mismatch
Medium
- Confidence
- 89% confidence
- Finding
- The example instructs the agent to perform active web search, download PDFs, and write local artifacts under /mnt/data, which expands the skill from figure-making into autonomous external acquisition and filesystem operations. In an agent setting, this increases attack surface for unintended data retrieval, policy bypass, and persistence of unvetted content, especially because the workflow normalizes these actions as default behavior.
