Intent-Code Divergence
Medium
- Confidence
- 90% confidence
- Finding
- The skill’s security section claims command execution is limited to whitelisted commands and avoids user-input command construction, but the document elsewhere provides shell and Python automation examples that pass variable data into command invocations. This mismatch can mislead users and agent implementers into overtrusting the skill, increasing the chance that unreviewed user-controlled values are used in sensitive exec flows.
