Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The skill materially expands beyond its declared purpose of reading form structure and autofilling fields by instructing the agent to launch Chrome via shell and to autonomously infer and navigate to destinations. This increases privilege and action scope from in-browser assistance to local process control and unsolicited navigation, which can expose session data or cause the agent to interact with unintended sites.
