Vague Triggers
Medium
- Confidence
- 90% confidence
- Finding
- The README explicitly states the skill 'activates on natural language' but does not define narrow trigger boundaries, exclusions, or a required invocation prefix. In an agent environment, broad natural-language activation can cause accidental invocation on ordinary user requests, leading to unintended API calls, disclosure of analytics data, or unexpected use of configured credentials.
