Description-Behavior Mismatch
Medium
- Confidence
- 87% confidence
- Finding
- The installation section explicitly states that the skill patches AGENTS.md so the protocol is always in context, which is a self-modifying persistence mechanism beyond ordinary routing guidance. Persistently altering agent instructions can silently change future behavior across sessions and other tasks, making mistakes or abuse harder to detect and reverse.
