Intent-Code Divergence
Medium
- Confidence
- 93% confidence
- Finding
- The skill claims commands run in a '安全沙箱' (safe sandbox), but the rest of the document exposes raw exec capability and provides direct CLI invocation guidance without any actual sandbox boundaries, policy, or isolation guarantees. This can cause users or agent frameworks to over-trust command execution and run risky operations under a false sense of safety.
