Vague Triggers
Medium
- Confidence
- 84% confidence
- Finding
- The instruction to read a remote URL and follow its instructions creates a prompt-injection and trust-on-first-use risk. Because the remote content can change after installation, an agent may later ingest adversarial instructions that trigger unintended actions, external posts, or sensitive data handling without stable review.
