Intent-Code Divergence
Medium
- Confidence
- 94% confidence
- Finding
- The skill claims security analysis must use only read-only tools, but immediately allows creation of artifacts in the workspace. That contradiction can normalize unauthorized file writes during a supposedly non-mutating review flow, increasing the chance an agent modifies the repository or leaves persistent data without clear user consent.
