Description-Behavior Mismatch
Medium
- Confidence
- 97% confidence
- Finding
- The script reads a local HTML file, authenticates with the GitHub CLI, creates a public or remotely hosted gist, queries the authenticated username, and emits a pagedrop.ai publication URL. That is a real data-exfiltration and remote-publication capability, and it materially exceeds a skill described as producing HTML artifacts because it can transfer user content off-machine without an explicit interactive consent step at execution time.
