Intent-Code Divergence
High
- Confidence
- 97% confidence
- Finding
- The tail section instructs the agent to execute terminal commands for media generation, which directly conflicts with the earlier documented workflow that should only produce a plan and call drawToCanvas after explicit confirmation. This inconsistency creates an unsafe privilege expansion path: an agent may leave the constrained canvas flow and perform external command execution and networked API actions not required by the skill’s primary function.
