Intent-Code Divergence
Medium
- Confidence
- 92% confidence
- Finding
- The skill is explicitly described as a routing-only entry point, but its workflow instructs the agent to confirm whether an operation is mutating and then execute a target operation. That expands scope from classification/routing into action-taking, which can cause unintended remote changes if an agent follows the entry skill directly instead of delegating to a bounded sub-skill.
