Vague Triggers
Medium
- Confidence
- 88% confidence
- Finding
- The skill description and metadata use broad trigger language like 'Solana lending risk' and 'DeFi fund health,' which can cause the agent to invoke this skill for loosely related finance conversations rather than only for explicit Kamino position monitoring. This is primarily a scope-control issue: it can lead to unnecessary execution, exposure of wallet-related workflows, or confusing responses, though it does not itself introduce direct code execution or privilege escalation.
