Description-Behavior Mismatch
Medium
- Confidence
- 91% confidence
- Finding
- The manifest presents a financial-data skill set, but the body of the file instructs the agent/user to perform local installation, filesystem writes, downloads, and environment setup. That expands behavior well beyond the declared business purpose and increases the chance an agent executes risky host-modifying actions under the guise of a finance skill.
