Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The manifest claims the skill is for 'searching and reading data,' but the documented actions issue temporary AWS credentials via AssumeRole and federated credential flows. This misclassification can cause an agent or user to treat credential-minting operations as low-risk read activity, increasing the chance of unauthorized privilege use or accidental secret exposure.
