Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The catch-all routing rule sends 'Everything else' to the SSE/generation action, which makes the skill activate on a very broad range of user prompts. In practice this can cause unintended invocation, accidental transmission of user content to the remote backend, and confused-deputy behavior where unrelated requests are interpreted as editing/generation commands.
