Description-Behavior Mismatch
High
- Confidence
- 96% confidence
- Finding
- The manifest and description position the skill as a read-only interface for 'searching and reading data,' but the instructions explicitly permit running any Breathe connector action and describe handling for [write] and [destructive] actions. That mismatch can mislead an agent or reviewer into granting broader operational authority than intended, increasing the risk of unauthorized state changes if additional write-capable actions exist or are later added.
