Description-Behavior Mismatch
Medium
- Confidence
- 89% confidence
- Finding
- The workflow doc for this REST-only skill includes WebSocket/streaming troubleshooting, including a streaming URL and auth guidance, which conflicts with the manifest's stated boundary that streaming use cases belong to a different skill. This can cause an agent to select the wrong capability, mishandle user requests, or expose credentials to an unintended endpoint/class of service, creating confusion and increasing the chance of insecure integration mistakes.
