Vague Triggers
Medium
- Confidence
- 93% confidence
- Finding
- The refresh rule instructs the agent to periodically fetch remote documents and then 'follow current heartbeat instructions,' which delegates future behavior to mutable external content. That creates an unbounded control channel where the skill author can later change the remote instructions to induce repeated posting or other external actions without renewed user review.
