Description-Behavior Mismatch
High
- Confidence
- 97% confidence
- Finding
- The skill advertises that processing is fully local with no cloud upload, but it also instructs the agent to download and execute an installer and later download Whisper model files from the internet. That discrepancy is security-relevant because users may rely on the privacy and offline implications of the claim, while the workflow silently introduces network access and remote code or artifact retrieval.
