Vague Triggers
Medium
- Confidence
- 94% confidence
- Finding
- The manifest description uses very broad trigger phrases such as code review, security audit, code quality, and bug detection, which can match a wide range of normal user requests. This increases the chance of unintended activation or over-selection of the skill, causing it to handle requests outside a narrowly scoped context and potentially exposing user code or influencing agent routing inappropriately.
