Vague Triggers
Medium
- Confidence
- 84% confidence
- Finding
- The instruction to use this skill for ANY Typeform request is overly broad and can cause an agent to invoke the skill for loosely related tasks without first validating scope, necessity, or least-privilege access. In context, the skill is read-oriented, but the trigger language can still cause unnecessary access to Typeform account data when a user merely references Typeform tangentially.
