Description-Behavior Mismatch
Medium
- Confidence
- 89% confidence
- Finding
- The manifest frames the skill as interacting with Writer data, but the body expands scope to generic workflow automation through Membrane, including dynamic connection creation and direct API proxying. That mismatch can cause an orchestrating agent or user to invoke the skill under narrower trust assumptions than the skill actually requires, increasing the chance of unintended external actions or data movement.
