Description-Behavior Mismatch
Medium
- Confidence
- 86% confidence
- Finding
- The skill is presented as an automated code review tool, but the documented health check includes host/service monitoring and automatic restarts of nginx, docker, and other services. This scope expansion creates operational control beyond the declared purpose, increasing the risk that users deploy the skill with elevated privileges and unintentionally grant it broader system-management capability.
