Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The skill description and frontmatter trigger conditions are extremely broad, instructing invocation whenever users mention browser-act by name or for a large set of generic web tasks. This can cause the agent to invoke a powerful browser automation capability in situations where simpler, lower-privilege tools would suffice, increasing the chance of unintended navigation, session use, authenticated actions, or exposure to adversarial web content.
