Vague Triggers
Medium
- Confidence
- 89% confidence
- Finding
- The skill positions itself as general 'Agent & MCP integration' and describes broad logging behavior without defining when it should activate, what tools or data classes it applies to, or what user approval boundaries exist. In an agent environment, ambiguous scope can cause the skill to attach to arbitrary MCP results and silently persist sensitive tool outputs, increasing the chance of unintended collection and misuse.
