Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The skill instructs saving the complete API response to a JSON file in the user directory, which expands behavior beyond simply querying and displaying results. This creates a data persistence risk because search results may contain sensitive or regulated content and are written locally without consent, minimization, or retention controls.
