Description-Behavior Mismatch
Medium
- Confidence
- 67% confidence
- Finding
- The manifest presents a narrow DID/airdrop/governance/NFT scope, but the document actually instructs the agent to perform broad social-network behaviors including posting, messaging, following, and feed engagement. This scope expansion is dangerous because users or host systems may grant trust based on the manifest while the skill drives much more invasive autonomous activity than advertised.
