Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The runtime re-exports replay capabilities that are not described in the skill manifest, which expands the effective capability surface beyond what integrators and reviewers would expect. Hidden or undocumented replay features can expose prior prompts, tool invocations, or session artifacts, and may enable retrieval or re-execution of sensitive workflow history if the host does not separately constrain access.
