Description-Behavior Mismatch
High
- Confidence
- 98% confidence
- Finding
- The skill is advertised as a PR description generator, but it also instructs the agent to perform a state-changing remote action by editing GitHub PR metadata via `gh pr edit`. That expands scope from summarization into repository modification, which can cause unauthorized or unintended changes if the skill is auto-triggered or the user does not fully understand the side effect.
