Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The skill directs the agent to intercept and rewrite every shell command with no scoped exceptions, which gives an external helper broad influence over all command execution. In this context, the hook is LLM-enforced rather than OS-enforced, so the agent is being instructed to trust arbitrary command transformations globally, increasing the chance of unintended, unsafe, or attacker-influenced execution.
