Vague Triggers
Medium
- Confidence
- 90% confidence
- Finding
- The skill enables implicit invocation without any narrowing conditions, which allows the agent to select and run this skill based solely on broad relevance. That increases the chance of unintended activation in unrelated conversations, potentially exposing repository analysis or recommendation behavior where the user did not explicitly request it. In a security context, over-broad auto-invocation expands attack surface and can be abused through prompt steering or context injection.
