Description-Behavior Mismatch
High
- Confidence
- 95% confidence
- Finding
- The manifest frames the skill as a read-only structured analysis tool, but the body advertises broader operational capabilities such as file writing, external API integration, and command execution. This mismatch is dangerous because users or agent orchestrators may invoke the skill under a low-risk assumption while the documentation encourages actions that expand data exposure and execution risk.
