Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- This script includes account-level IMM administration capabilities such as project creation, bucket attachment, and lifecycle management that go beyond a narrowly scoped media-processing skill. In an agent context, this expands the blast radius from processing a user-specified object to modifying persistent cloud resources, increasing the risk of unauthorized configuration changes or abuse if invoked indirectly.
