Vague Triggers
Medium
- Confidence
- 93% confidence
- Finding
- The skill explicitly instructs the agent to act autonomously on first activation: 'Don't ask ... — trade.' That creates an overly broad activation condition where the agent may perform state-changing actions without clear user consent for that session, which is risky even in a paper-trading context because it normalizes unauthorized action and can trigger unwanted external effects such as public posts or persistent account changes.
