Vague Triggers
Medium
- Confidence
- 93% confidence
- Finding
- The invocation example includes a generic phrase, "帮我分析这个产品的用户反馈", which could match ordinary conversation and trigger this high-privilege skill unintentionally. Because the skill uses browser automation against logged-in ecommerce sessions and extracts review/user data, accidental activation increases the chance of unintended data access and collection.
