Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The skill’s stated purpose is Rosette text analytics, but the documented connection flow can create generic Membrane apps/connectors when no known app is found. That broadens capability beyond the declared scope and can enable interaction with unintended services or expanded surfaces the user did not explicitly authorize.
