Intent-Code Divergence
Low
- Confidence
- 89% confidence
- Finding
- The comments say probes should only be listed so the agent knows they can be run if the user asks, but the generated bundle instructs the agent to run them whenever current state is needed for the turn. That broadens authority from user-driven execution to model-driven execution and can cause unapproved command execution via the host exec tool.
