Vague Triggers
Medium
- Confidence
- 96% confidence
- Finding
- The invocation guidance uses very broad natural-language trigger phrases like "use Codex" or "delegate to Codex," which can easily appear in ordinary discussion about tooling rather than as an explicit authorization to execute the skill. In an agentic environment, this ambiguity can cause unintended delegation of repository access, code modification, or command execution through the local Codex CLI, increasing the risk of accidental actions.
