Description-Behavior Mismatch
Medium
- Confidence
- 90% confidence
- Finding
- The architecture extends a nominal image-generation skill into automatic web-search grounding, which materially changes the data flow and trust boundary. User prompts and derived subjects may be sent to search providers and external services without an explicit consent step, increasing privacy exposure and creating capability creep beyond the stated purpose.
