Intent-Code Divergence
Medium
- Confidence
- 97% confidence
- Finding
- The documentation states there is no file system access, yet the skill includes example code that opens and reads a local inventory file. This creates a misleading security posture: users may grant or run the skill under incorrect assumptions about disk access, which can affect trust, sandboxing decisions, and review outcomes.
