Description-Behavior Mismatch
High
- Confidence
- 95% confidence
- Finding
- The manifest and description promise this skill is for 'searching and reading data,' but the body instructs the agent to inspect arbitrary action schemas and run any action on the connector. That mismatch can cause an orchestrator or user to trust the skill as read-only when it is actually capable of invoking state-changing operations, creating a risk of unauthorized writes or destructive actions.
