Description-Behavior Mismatch
Medium
- Confidence
- 92% confidence
- Finding
- The skill exposes state-changing and destructive operations such as delete_monitor, delete_watchdog, pause/resume, and update_tracker_page, while the manifest description emphasizes monitoring and status-checking. Even though deletion tools mention confirmation in descriptions, there is no hard technical enforcement in code, so an agent or prompt-injection could invoke them and modify or destroy user resources.
