Intent-Code Divergence
Medium
- Confidence
- 88% confidence
- Finding
- The document says the database account should lack CREATE privileges, yet earlier workflow says unmatched exercises should be inserted as new records. This contradiction can lead operators to overgrant privileges so the skill works, weakening least-privilege controls and expanding the blast radius if the account is abused.
