Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The skill is presented as focused on digital-code purchasing, but the documented order-detail endpoint also includes shipping tracking and physical-order metadata. This broadens the accessible data surface beyond the stated scope and can expose sensitive order and delivery information to an agent or workflow that expected only digital purchases.
