Description-Behavior Mismatch
Medium
- Confidence
- 89% confidence
- Finding
- The README defines the core skill as a router, but nearby documentation and examples blur that boundary and imply the core entrypoint may directly trigger operational actions such as contacting providers, notifying children, emergency escalation, and outbound messaging. In a safety-sensitive elder-care travel context, this scope ambiguity can cause over-privileged routing behavior, unexpected side effects, and accidental invocation of sensitive actions without clear consent or separation of responsibilities.
