Description-Behavior Mismatch
Medium
- Confidence
- 92% confidence
- Finding
- The manifest and top-level description frame the skill as WeChat Official Accounts public-content querying, but the body expands scope to Video Channels and WeChat Search, materially broadening data access and processing. This mismatch can cause agents or reviewers to grant trust, permissions, or approvals under an incomplete understanding of what the skill actually does, increasing the risk of unintended third-party data transmission and overcollection.
