Vague Triggers
Medium
- Confidence
- 87% confidence
- Finding
- The routing table sends all unmatched prompts to the SSE generation/editing workflow, which effectively turns ambiguous or unexpected user input into backend actions. In a skill that can create sessions, upload content, and issue edit/render requests, this increases the chance of unintended API calls, prompt-triggered state changes, and unsafe handling of malformed or adversarial input.
