Vague Triggers
Medium
- Confidence
- 90% confidence
- Finding
- The skill’s trigger guidance includes very broad, common phrases like 'how do I do X' and 'can you do X', which can cause the skill to activate in many ordinary conversations where the user is not actually asking to discover or install skills. In this context, unintended invocation is risky because the skill can steer the agent toward package discovery and installation workflows, increasing the chance of unnecessary command suggestions or supply-chain exposure.
