Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The skill is presented as a simple video compression tool, but its documented behavior exposes a much broader remote video editing and render pipeline, including timeline/state management, SSE-driven edits, uploads, and export orchestration. This mismatch can mislead users and reviewers about what data is sent remotely and what actions the skill may perform, increasing the risk of unintended data disclosure or unexpected cloud-side processing.
