Vague Triggers
Medium
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to run transcription whenever it receives voice memos, without requiring confirmation, scope checks, or sensitivity screening. In this context, that can cause private audio to be sent to an external API by default, creating an unnecessary data-exposure risk and increasing the chance of unintended tool execution.
