Description-Behavior Mismatch
Medium
- Confidence
- 95% confidence
- Finding
- The skill is named and described as a chat-history lookup tool, but the documentation also instructs the agent to access an audit-log table for LLM cost and usage analysis. This expands the skill’s operational scope beyond user-expected message search and creates a pathway for unintended access to adjacent sensitive business telemetry without clear authorization boundaries.
