Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The email-monitoring eval asks the agent to "set up my daily email monitoring system" and automatically process financial documents without defining clear scope, authorization checks, mailbox boundaries, or approval gates. In an agent-skill context, this can normalize over-broad autonomous access to sensitive communications and attachments, increasing the risk of unauthorized data access, over-collection, and unsafe automation if implemented literally.
