Vague Triggers
Medium
- Confidence
- 83% confidence
- Finding
- The trigger phrases are broad and generic, such as 'check imports' and 'check dependencies', which can cause the skill to activate unintentionally in unrelated conversations about code or packaging. Unintended invocation can expose local file paths or cause the agent to perform scans the user did not clearly intend, increasing the chance of accidental data access or disruptive behavior.
