Vague Triggers
Medium
- Confidence
- 93% confidence
- Finding
- 这些中文触发词包含“我该怎么办”“帮我分析一下”等高频日常表达,明显会与普通对话重叠,导致技能在并非需要结构化决策流程时被误触发。误触发本身不是远程代码执行类问题,但会让代理在错误上下文中切换到该技能,并可能引导用户进入文件创建、记录和归档流程。
Security checks across malware telemetry and agentic risk
This is a transparent decision-journaling skill whose main risk is saving sensitive personal notes if the user chooses to create records.
Install this only if you want a persistent local decision journal. Before creating records, confirm the folder path, avoid unnecessary sensitive details about finances, health, relationships, or third parties, and review generated files before keeping or syncing them.
65/65 vendors flagged this skill as clean.