Intent-Code Divergence
Low
- Confidence
- 87% confidence
- Finding
- The comment explicitly says patterns are base64-encoded to avoid self-detection by naive scanners, and the code also skips scanning the tool's own skill directory. While likely intended to reduce noisy self-matches, this combination creates an audit blind spot and signals deliberate scanner evasion behavior, which is risky in a security tool because it can hide malicious additions in the scanner itself.
