Vague Triggers
Medium
- Confidence
- 83% confidence
- Finding
- The description uses very broad activation language such as 'do anything with a user's monday.com workspace,' which can cause the agent to invoke this skill for a wide range of requests with both read and write capability. In a skill backed by a live API token and mutation support, overbroad routing increases the chance of unintended data access or workspace modification.
