Vague Triggers
Medium
- Confidence
- 94% confidence
- Finding
- The auto-activation triggers are overly broad and include common terms like 'text', 'title', and 'headline', as well as any non-Latin characters. In an agent setting, this can cause the skill to run on many ordinary requests unexpectedly, expanding access to external services and file-processing steps without clear user intent or consent.
