Description-Behavior Mismatch
High
- Confidence
- 98% confidence
- Finding
- The skill is labeled read-only, but it instructs the agent to run global CLI configuration commands such as enabling AI mode, changing user-agent settings, and disabling AI mode later. These are state-changing operations on the local environment and can alter behavior for other sessions, users, or tasks, violating the principle of least surprise and the skill's own safety contract.
