Vague Triggers
Medium
- Confidence
- 91% confidence
- Finding
- The system prompt uses broad routing rules like 'If user sends YouTube link call process_video' and 'If user asks question call retrieve_chunks' without clear scope checks, consent boundaries, or constraints on when tool invocation is appropriate. This can cause unintended tool calls on loosely matched inputs, increasing the chance of unnecessary processing, privacy issues, or misuse of local services through prompt-triggered behavior.
