Vague Triggers
Medium
- Confidence
- 96% confidence
- Finding
- The activation guidance uses very broad phrases like '帮我写文章' and '生成报告', which are common, ordinary user requests rather than clearly scoped invocations. This can cause unintended skill activation and grant the skill access to higher-risk capabilities such as browser, exec, and read/write in contexts where the user did not explicitly intend to invoke an automation workflow.
