Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The startup routine grants the skill persistent local state, autonomous execution on every restart, and the ability to resume prior tasks, which exceeds the declared role of a passive request router. This mismatch increases the attack surface and can enable unreviewed background behavior, persistence, and unintended data retention.
