Description-Behavior Mismatch
Medium
- Confidence
- 95% confidence
- Finding
- The manifest and description say the skill is for managing organizations, but the body documents a much broader Droxy integration covering chatbots, resources, conversations, and generic action discovery. This scope mismatch can cause the agent to invoke the skill in contexts far beyond the user's expected authorization boundary, increasing the chance of unintended access or operations.
