Description-Behavior Mismatch
Medium
- Confidence
- 81% confidence
- Finding
- The skill advertises itself as a pure text output assistant, but later instructs the agent to write back to local JSON files. That capability mismatch can mislead reviewers and users about side effects, increasing the chance that local data is modified without informed consent or proper authorization checks.
