Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The skill advertises automatic activation for broadly defined travel-related requests, which can cause it to trigger on ordinary conversation and route user prompts to an external MCP-backed capability without clear user intent. In a plugin that performs remote lookups, overbroad triggering increases the chance of unnecessary data disclosure and unintended external tool use.
