Vague Triggers
Medium
- Confidence
- 84% confidence
- Finding
- The instruction to use the skill whenever a user wants to interact with external services through Civic is overly broad and lacks clear guardrails for when the agent should invoke high-impact integrations. Because Civic can reach Gmail, databases, and other sensitive systems, vague activation criteria can cause the agent to over-trigger the skill and perform unintended data access or actions on connected services.
