Description-Behavior Mismatch
Medium
- Confidence
- 92% confidence
- Finding
- The skill’s stated scope is bounded, minimal-necessary coordination for a current task, but this section expands it into a cross-agent orchestration and write-capable hub with schema-governed handoffs and potential persistent writeback. That creates a privilege/scope mismatch: a coordinator that can trigger downstream writes to long-term stores materially increases the blast radius of prompt misuse, over-collection, or unauthorized persistence even if the document also mentions consent and validation.
