Vague Triggers
Medium
- Confidence
- 84% confidence
- Finding
- The auto-invocation guidance is broad enough that an agent may trigger the skill whenever a user mentions a bank card image path, without strong consent or exclusion rules. Because the skill uploads highly sensitive financial imagery to an external service, overly permissive triggering increases the risk of unintended data disclosure.
