Description-Behavior Mismatch
Medium
- Confidence
- 95% confidence
- Finding
- The setup section documents creation of files such as SELF.md, memory/questions.md, and tasks/QUEUE.md, but these artifacts are not declared in the manifest's reads/writes. In an agent skill system, undeclared file operations undermine permission transparency and can lead operators or enforcement tooling to grant a skill broader effective access than intended, especially because these files can influence agent behavior and task execution.
