Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The skill's stated purpose is worktree setup, but it also instructs the agent to run dependency installation, builds, and tests automatically. Those steps can execute untrusted project-controlled code such as npm lifecycle scripts, Python package hooks, or test code, expanding the action surface well beyond simple repository workspace creation.
