Vague Triggers
Medium
- Confidence
- 93% confidence
- Finding
- The skill description includes broad trigger phrases such as 'review changes', 'find bugs', 'security review', and 'audit code on the current branch', which can match many ordinary developer requests and cause the skill to auto-activate in contexts broader than intended. Because this skill instructs the agent to inspect local branch diffs and repository contents, over-broad routing increases the chance of unintended invocation, unnecessary exposure of sensitive code, and prompt-surface expansion from untrusted repository content.
