Description-Behavior Mismatch
Medium
- Confidence
- 96% confidence
- Finding
- The manifest markets the skill as generating editing ideas from raw footage, but the body documents materially broader behavior: uploading media to a cloud backend, running a render pipeline, and returning downloadable 1080p MP4 outputs. This scope mismatch can mislead users and host platforms about what data leaves the device and what actions the skill performs, undermining informed consent and security review.
