Vague Triggers
Medium
- Confidence
- 88% confidence
- Finding
- The skill is described broadly enough to be invoked for scraping essentially any webpage, with no stated restrictions, consent checks, or domain allowlisting. In an agent context, this can lead to unintended collection of sensitive page content, scraping authenticated or private pages visible to the agent/browser, or use in policy-violating data extraction workflows.
