Intent-Code Divergence
Medium
- Confidence
- 91% confidence
- Finding
- The skill describes itself as "read-only," but its documented workflow explicitly tells the agent to install other skills via package-manager commands. That mismatch can mislead users and downstream agents into underestimating the trust and execution risk of pulling and installing third-party code.
