Description-Behavior Mismatch
High
- Confidence
- 96% confidence
- Finding
- The playbook authorizes automatic installation of both required and optional skills, which is an operational side effect far beyond the stated scope of building or planning a reusable multi-agent team. This creates a supply-chain and unauthorized-action risk because the skill can fetch, assess, and install third-party components without explicit user approval for each change.
