Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The skill goes beyond a user-expected personal CRM by instructing the agent to scan recent Gmail content for relationship signals and persist derived intelligence. This materially expands data access and collection scope into highly sensitive communications without clear upfront disclosure in the manifest description, creating a transparency and consent problem.
