Description-Behavior Mismatch
Medium
- Confidence
- 97% confidence
- Finding
- The skill markets itself as local-contact management, but repeatedly instructs the agent to search the web for people and organizations and to fetch remote content. That expands the trust boundary beyond local files, can leak user intent about private contacts to external services, and creates a mismatch between user expectations and actual data handling.
