Vague Triggers
Medium
- Confidence
- 94% confidence
- Finding
- The manifest description says to use this skill for "ANY BotStar request" and "instead of calling the API directly," which is an overly broad trigger that can cause the agent to invoke the skill in situations where narrower, safer handling would be more appropriate. Because this skill includes write and destructive actions, broad auto-selection increases the chance of unintended state-changing operations being routed through the skill without sufficient task-specific gating.
