Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The skill’s advertised purpose is lightweight conversation memory, but the implementation also includes bulk import/export and full deletion capabilities that materially expand its authority over stored data. In an agent context, these hidden or under-disclosed capabilities increase the chance of unintended data exfiltration or destructive actions beyond what a user would reasonably expect from the manifest.
