Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The trigger phrases include broad natural-language requests such as 'is this code risky' and 'who last touched this and is it safe', which can match ordinary developer conversation and cause the skill to activate outside explicit user intent. In an auditing skill, unintended activation can lead to over-collection of repository metadata or execution of local git commands in contexts where the user did not mean to invoke the tool.
