Description-Behavior Mismatch
Medium
- Confidence
- 92% confidence
- Finding
- The manifest says the skill is for 'searching and reading data,' but the body includes guidance for create/update/send/post/delete-style operations. This mismatch can mislead downstream agents or reviewers into granting broader trust to the skill than its declared scope warrants, increasing the chance that future state-changing actions are invoked without appropriate scrutiny.
