Intent-Code Divergence
Medium
- Confidence
- 94% confidence
- Finding
- The self-evolution section explicitly allows the skill to update its own SKILL.md, creating a self-modifying prompt surface. In an agent setting, this is dangerous because untrusted sample content or user-provided text could be incorporated into future instructions, causing persistent prompt injection or policy drift beyond the original novel-writing scope.
