Description-Behavior Mismatch
High
- Confidence
- 86% confidence
- Finding
- The manifest and description present the skill as being for 'searching and reading data', but the document also includes setup operations and safety guidance for potential write/destructive actions. This creates a trust-boundary mismatch: an agent or reviewer may assume the skill is read-only and invoke it under weaker safeguards, increasing the chance of unintended account-affecting or state-changing behavior if additional actions are later exposed through the connector.
