Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The skill says 'When invoked' and then proceeds to review workflows and 'implement comprehensive developer experience enhancements' without defining clear triggers, authorization boundaries, or scope. In an agentic environment, ambiguous invocation can cause the skill to activate in unrelated contexts and make broad changes to build, tooling, or workflow configuration that the user did not explicitly request.
