Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The documentation expands beyond read-only intelligence retrieval into a write-capable POST feedback endpoint and a content-generation advisor service, which increases the skill's operational scope and risk surface. In an agent setting, this can lead to unintended outbound submissions, user-prompt exfiltration to third parties, or paid actions that the manifest description does not clearly foreground.
