Description-Behavior Mismatch
High
- Confidence
- 98% confidence
- Finding
- The skill metadata and introductory description claim one Finmei data model (Organizations, Pipelines, Users, Goals, Filters), while the concrete action catalog describes a different domain (invoices, payments, customers, products). This mismatch can cause an agent to invoke incorrect actions against the wrong external system or data model, leading to unintended data access, modification, or deletion under false assumptions about what the skill does.
