Description-Behavior Mismatch
High
- Confidence
- 99% confidence
- Finding
- The publish script hard-codes a different identity than the declared skill: it publishes with slug "replyher" and points users to replyher GitHub/ClawHub URLs instead of gaslighting-detector. This can cause the wrong project to be released or overwrite/update another skill, creating a supply-chain and integrity risk where operators believe they are publishing one artifact but actually distribute another.
