Vague Triggers
Medium
- Confidence
- 89% confidence
- Finding
- The skill declares itself as a global auto-trigger interceptor without meaningful scope limits, causing it to run across all message flows and influence authorization decisions platform-wide. Broad interception increases the blast radius of logic errors, prompt-triggered misclassification, or abuse, especially because this skill governs permission checks and could incorrectly block or allow sensitive actions such as skill installation or removal.
