Vague Triggers
Medium
- Confidence
- 91% confidence
- Finding
- The default prompt is a generic invocation phrase that automatically routes the model into a high-capability CLI skill without stating user-consent, scope, or safety boundaries. In a skill that can start or resume sessions, inspect account/session state, and manage carts, broad activation increases the chance of unintended execution on ambiguous user requests or prompt-injected contexts.
