Vague Triggers
Medium
- Confidence
- 94% confidence
- Finding
- The trigger text says the skill must be used whenever a user sends an image or asks about image content, which is overly broad and can cause the agent to invoke an external vision service in ordinary conversations without clear user intent. In this skill’s context, that increases the chance of unnecessary data disclosure because user-provided images or local paths may be sent to a third-party API.
