Vague Triggers
Medium
- Confidence
- 82% confidence
- Finding
- The trigger phrases are broad enough to activate on ordinary conversation such as asking whether a regex is safe or discussing regex performance. In an agent environment, overbroad activation can cause unintended skill invocation, expanding the attack surface for prompt injection, data over-collection, or disruptive behavior if the skill scans repositories when not explicitly requested.
