Vague Triggers
Medium
- Confidence
- 87% confidence
- Finding
- The activation guidance is overly broad: 'when user asks about books' could cause the agent to invoke this skill for general book-related conversation, not just explicit lookup requests. This can lead to unnecessary external API calls, unintended tool use, and reduced user control, though the skill is read-only and uses a public no-auth API, which limits the severity.
