Description-Behavior Mismatch
Medium
- Confidence
- 82% confidence
- Finding
- Per-agent model routing extends the skill from tool-governance into execution-orchestration, which is a different trust boundary than advertised. If a governance plugin can also choose weaker or different models, an attacker or misconfiguration could indirectly reduce safety guarantees, alter data handling, or route sensitive tasks to unintended providers.
