Vague Triggers
Medium
- Confidence
- 87% confidence
- Finding
- The activation condition 'background audit on session content' is ambiguous and does not define what content may be scanned, under whose authority, or when consent is required. That ambiguity can expand the skill's reach to entire sessions, prompts, or knowledge bases, increasing the risk of over-collection and local retention of sensitive information beyond user expectations. In this skill, that is particularly concerning because it explicitly instructs scanning multiple content sources asynchronously and logging outcomes.
