Vague Triggers
Medium
- Confidence
- 93% confidence
- Finding
- 技能元数据中的描述和触发关键词覆盖“职业规划、职业转型、职业困惑、未来镜像、职业蓝图”等宽泛主题,且面向“任何人生阶段”,容易在普通咨询、情绪支持或泛职业话题中被过度触发。误触发后会引导用户提供大量个人背景、教育和工作经历,扩大不必要的数据收集面。
Security checks across static analysis, malware telemetry, and agentic risk
This career-planning skill is mostly purpose-aligned, but it quietly saves sensitive personal conversation data locally without clear consent or retention controls.
Install only if you are comfortable sharing detailed career, education, income, and personal uncertainty information with the skill. Before using it, ask the agent not to silently save conversation logs, or delete output/data/conversation_log.json after generating the letter.
No static analysis findings were reported for this release.
VirusTotal findings are pending for this skill version.