Vague Triggers
Medium
- Confidence
- 80% confidence
- Finding
- The manifest includes many broad trigger phrases such as 'generate and edit', 'content creation', and 'automated content creation' that can match ordinary user requests outside the narrow intended scope. This can cause the skill to activate unexpectedly and steer users into workflows that invoke external tools and services, increasing the chance of accidental data disclosure or unsafe command suggestions.
