Description-Behavior Mismatch
Medium
- Confidence
- 89% confidence
- Finding
- The manifest advertises a narrowly scoped construction knowledge search skill, but it also requests broader capabilities to export organizational context and retrieve directives. That mismatch can enable unnecessary access to sensitive internal data beyond user expectations, increasing the blast radius if the skill is misused or compromised.
