Intent-Code Divergence
Medium
- Confidence
- 97% confidence
- Finding
- The skill earlier documents a safer constraint requiring deletion requests to include the word "agent" or an explicit skill prefix, but this later section reintroduces a bare "删除 <ID>" trigger. That contradiction materially increases the chance of unintended activation of a destructive workflow from ordinary conversation, especially because deletion changes global config and removes cron/bindings/workspace state.
