Intent-Code Divergence
Medium
- Confidence
- 84% confidence
- Finding
- The skill claims command execution occurs in a 'safe sandbox', but the rest of the document only declares generic exec capability and kubectl/system command execution without defining any actual sandbox controls. This can mislead users into granting trust to high-impact command execution that may run with the agent's real privileges against local files and configured clusters.
