Vague Triggers
Medium
- Confidence
- 77% confidence
- Finding
- The trigger language is broad enough to activate on many generic finance-analysis prompts, which can cause the wrong skill to intercept requests and invoke web search/exec in contexts the user did not intend. Over-broad routing increases the attack surface by making tool-using skills run more often, especially when they can execute scripts and consume external data.
