Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The manifest says the skill is for managing Leads, Organizations, and Users, but the body documents a much broader CRM and platform administration surface, including many objects and operational verbs. This mismatch can cause the agent or user to invoke the skill in contexts they did not intend, expanding effective permissions and increasing the chance of overbroad or unsafe actions.
