Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The README describes substantially broader capabilities than the declared skill purpose, including an HTTP API, asynchronous queue management, batch messaging, and service operation. Scope expansion is dangerous for agent-integrated skills because operators may grant a narrowly scoped messaging skill access to a more general local service that can be driven programmatically and at scale.
