Description-Behavior Mismatch
Medium
- Confidence
- 95% confidence
- Finding
- The skill description and examples frame the capability as text-to-video conversion from TXT/DOCX/PDF/SRT, but the implementation instructions allow uploading and processing a much broader set of media types including video, audio, and images. This mismatch can cause users or calling platforms to grant the skill broader access than expected, increasing the risk of unintended data exfiltration or misuse of local media files.
