Vague Triggers
Medium
- Confidence
- 84% confidence
- Finding
- The trigger conditions are broad enough that the skill may activate automatically at conversation start or whenever the user mentions remembering something, causing reads or writes to persistent local storage without sufficiently explicit, per-event consent. In a memory skill, this increases the risk of collecting and retaining sensitive user data unintentionally across sessions, even without any network exfiltration.
