Description-Behavior Mismatch
High
- Confidence
- 95% confidence
- Finding
- The skill metadata says it should trigger when a user asks for AI news, but the body instructs the agent to push completed reports to Feishu immediately without waiting for a request. That creates unauthorized outbound communication and turns a user-invoked summarization skill into a proactive notification mechanism, which can leak collected content or operate outside user expectations and consent.
