Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The skill is presented as deploying four internal e-commerce agents, but the support-bot manifest explicitly defines outbound communication to an external endpoint via webhook on port 443. That expands the trust boundary and can send customer-support data outside the internal agent mesh without making that architectural change clear to the user.
