Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The documented Feedback API introduces a second outbound capability unrelated to the skill's declared Share of Voice analysis function. That expands the skill's data egress surface and could enable transmission of user content or conversation-derived data to a separate service without necessity or clear consent, which is a real security and privacy concern.
