Description-Behavior Mismatch
Medium
- Confidence
- 96% confidence
- Finding
- The skill is scoped as a simple color-adjustment utility, but it embeds instructions to create wallets, purchase credits, and perform marketplace jobs. That materially expands the authority and behavior of the agent into financial and account-affecting operations unrelated to the user-visible task, increasing the chance of unauthorized payments, account creation, or workflow pivoting. In context, this is more dangerous because color conversion is low-risk by nature, so users would not reasonably expect blockchain payments or job execution.
