Description-Behavior Mismatch
Medium
- Confidence
- 87% confidence
- Finding
- The manifest describes the skill broadly as image text extraction and OCR, while the body says it only supports social security card recognition. This mismatch can cause the agent to invoke the skill in unintended contexts, increasing the chance that unrelated or sensitive user images are sent to the external OCR service without appropriate expectation or consent.
