Vague Triggers
Medium
- Confidence
- 87% confidence
- Finding
- The skill's activation guidance uses very broad verbs like "read," "extract," "convert," "parse," "summarize," and "analyze" a PDF, which can cause the agent to invoke this external-processing skill for many ordinary document tasks without sufficiently specific user intent. Because the tool sends documents or URLs to a third-party API, overbroad triggering increases the chance of unintended data exfiltration or use on sensitive PDFs when a safer local or non-upload workflow would have been more appropriate.
