Description-Behavior Mismatch
Medium
- Confidence
- 84% confidence
- Finding
- The skill is presented as a search-only integration, but the documentation also exposes general chat and model-listing commands. This expands the operational scope beyond what a user or calling agent would reasonably expect, increasing the chance of unintended data disclosure, unreviewed third-party prompt transmission, or misuse of capabilities that were not justified by the declared purpose.
