Intent-Code Divergence
Medium
- Confidence
- 91% confidence
- Finding
- The skill claims to prevent sensitive information leakage, but the manifest grants both command execution and file write capabilities without describing any concrete guardrails, sandboxing, redaction, or access controls. This mismatch can mislead users into trusting the skill with sensitive repositories while the agent still has the ability to read, transform, and potentially exfiltrate or persist sensitive data.
