Intent-Code Divergence
Medium
- Confidence
- 78% confidence
- Finding
- Advertising generic create/query/export operations in a security-audit skill expands the apparent operational scope beyond read-only analysis and may prompt an agent to modify data or exfiltrate results without clear guardrails. In a skill with the exec tool enabled, ambiguous action verbs increase the chance of unsafe execution against user files, repositories, or exported artifacts.
