Description-Behavior Mismatch
Medium
- Confidence
- 95% confidence
- Finding
- The skill documentation describes the Gmail access as read-only, which is misleading because the code persists inbox-derived content to a local markdown file. While it does not modify Gmail state, writing email metadata, subjects, and drafted replies to disk creates a new confidentiality risk if the local machine, workspace, or logs are accessible to others.
