Vague Triggers
Medium
- Confidence
- 88% confidence
- Finding
- The skill markets itself as a universal MCP diagnostic tool and shows a `--all` invocation without defining scope limits, target boundaries, or exclusions. In an agentic environment, this ambiguity can cause the skill to enumerate, probe, or affect every reachable MCP server or adapter, increasing the chance of unintended access, disruption, or misuse beyond the operator’s intent.
