Vague Triggers
Medium
- Confidence
- 88% confidence
- Finding
- The invocation examples are broad enough to overlap with ordinary user requests to 'share' a skill, which can cause the agent to package local content and initiate exfiltration-like behavior without a distinct high-friction trigger. In this skill's context, that ambiguity is more dangerous because the documented behavior includes encryption and upload to an external file host, so a casual phrasing could activate data transfer workflows unexpectedly.
