Vague Triggers
Medium
- Confidence
- 91% confidence
- Finding
- The trigger list includes broad natural-language phrases such as '宣传单', '宣传册', and '宣传海报' that can plausibly appear in ordinary user requests, increasing the chance that this skill activates when the user did not explicitly intend to invoke it. Because the skill also claims authority to read references and produce output files, accidental activation expands the attack surface and could cause unintended file-generation behavior or override a more appropriate skill.
