Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The managed API example extends the skill from scraping into downstream LLM analysis, which is not clearly scoped by the manifest. That increases data-flow risk because scraped content may be transmitted to a general chat endpoint, potentially exposing third-party data and enabling prompt-injection or unintended secondary use.
