Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The skill is presented as a read-only web navigation tool, but default operation also writes fetched content and metadata to the local filesystem. In agent environments, implicit disk writes can leak sensitive fetched data, overwrite files in shared workspaces, or violate assumptions that the tool has no local side effects.
