Vague Triggers
Medium
- Confidence
- 90% confidence
- Finding
- The skill’s invocation text is broad enough to match many generic development requests such as creating APIs, websites, or backends, which can cause the agent to select this skill in situations where cloud deployment is not necessary. Because the skill includes guidance to authenticate, upload source code, and deploy to external infrastructure, over-invocation increases the chance of unnecessary code exfiltration or unintended external actions.
