Description-Behavior Mismatch
Medium
- Confidence
- 91% confidence
- Finding
- The manifest and top-level description say the skill is for searching and reading data, but the body explicitly documents create, update, send, post, delete, and remove operations. This mismatch can cause an agent or user to trust the skill as read-only and invoke it in situations where state-changing operations are unexpectedly possible, increasing the risk of unintended modifications in Rollbar.
