Vague Triggers
Medium
- Confidence
- 94% confidence
- Finding
- The trigger phrase "edit figure" is broad enough to match many ordinary user requests that are not specifically about this external ScholarPlot service. Overbroad activation can cause the skill to intercept unrelated prompts and route user content to the MCP backend, increasing the chance of unintended third-party data disclosure or inappropriate tool invocation.
