Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The skill documentation exposes capabilities to retrieve broad organizational context and to log conversations, which go beyond the stated architecture knowledge search and structured extraction purpose. That scope expansion increases the chance of unnecessary access to sensitive enterprise information and creates a path for collecting user/session data not clearly required for the declared function.
