Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The skill metadata says it should be used whenever a user's input contains images, which creates an overly broad auto-invocation rule. That can cause unintended transmission of user-supplied images to a third-party OCR service even when OCR is unnecessary, increasing privacy and data-exposure risk.
