Description-Behavior Mismatch
Medium
- Confidence
- 92% confidence
- Finding
- The manifest advertises CRM-style capabilities such as managing persons, organizations, deals, leads, and projects, while the body of the skill is clearly about MoonClerk billing and payment resources. This mismatch can cause the agent to invoke the skill in the wrong context and potentially expose or modify payment-related data when the user intended unrelated CRM operations.
