Description-Behavior Mismatch
Medium
- Confidence
- 96% confidence
- Finding
- The manifest and top-level description frame the skill as a video-upload workflow, but the implementation also accepts images and audio files. This capability mismatch can mislead users about what data may be transmitted to the cloud backend, weakening informed consent and increasing the chance of unintended exfiltration of non-video media.
