Natural-Language Policy Violations
Medium
- Confidence
- 93% confidence
- Finding
- The skill is written entirely in Chinese and frames the agent persona, dialogue style, examples, and outputs in Chinese without offering any user-selectable language preference. This can override user expectations or system defaults, causing prompt steering, accessibility issues, and reduced usability for non-Chinese-speaking users; while not a direct code-execution risk, it is a real policy/interaction vulnerability because it constrains model behavior without consent.
