Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The skill leaves the "When to Run" section empty, so its activation scope is ambiguous and may cause the agent to invoke it in unrelated contexts. While this is not directly exploitable like code execution, unclear routing can lead to unintended browsing of external banking sites, user confusion, or misuse of the skill in inappropriate tasks.
