Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The guidance 'Use when someone asks to generate or create ai caricature portrait generator images' is overly broad and underspecified, so an agent may invoke the skill for loosely related image requests without checking user intent, policy constraints, or whether external API use is appropriate. In a skill that sends prompts to a third-party image generation service and requires a token, ambiguous routing increases the chance of unnecessary data disclosure or unintended external actions.
