Vague Triggers
Medium
- Confidence
- 87% confidence
- Finding
- Routing 'Everything else' to the SSE action creates an overly broad trigger that can capture unrelated user requests and send them to an external backend for processing. In this skill, that increases the chance of unintended data disclosure and off-scope actions because arbitrary prompts may be forwarded to a third-party cloud editing service.
