Description-Behavior Mismatch
Medium
- Confidence
- 86% confidence
- Finding
- The README markets the skill as a template search/recommendation tool, but the documented project structure includes editing and export modules that materially expand its capabilities. This mismatch increases the risk of deceptive scope, over-privileged deployment, or unsafe downstream agent use because operators may grant credentials and browser access expecting read-only behavior while the skill can modify or extract user content.
