Vague Triggers
Medium
- Confidence
- 88% confidence
- Finding
- The README explicitly states that commands can be expressed in any language and as natural intent, which creates a very broad and fuzzy activation boundary. In a prompt-rewriting skill, this increases the chance of unintended activation or attacker-crafted phrasing being interpreted as control commands, potentially changing engine mode, loading data, or altering behavior without a clear explicit trigger.
