Vague Triggers
Medium
- Confidence
- 89% confidence
- Finding
- The skill metadata advertises very broad trigger phrases such as 'generate an image/video', 'analyze this image/video', and 'process this PDF', which overlap with many ordinary user requests. This can cause the skill to activate unexpectedly and route user content to an external service without a clear, deliberate invocation boundary, increasing the risk of unintended data exposure and tool misuse.
