Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The script persists review output into a long-lived LESSONS.md file even though the skill is presented as a review gate. That creates an undeclared side effect: task summaries, context filenames, and extracted review issues may be written to disk and retained across runs, which can leak sensitive project details or violate user expectations about a read-only review step.
