Vague Triggers
Medium
- Confidence
- 94% confidence
- Finding
- The skill's activation guidance is extremely broad, covering generic tasks like web search, news lookup, webpage reading, screenshots, and external API use. In an agent environment, this can cause the skill to trigger for many ordinary requests and route them into a payment-enabled workflow, increasing the chance of unnecessary external calls, unintended data sharing, and unauthorized spending.
