Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The skill’s stated purpose is to generate or iterate on an agent workspace, but this section goes further by instructing modification of global OpenClaw configuration, registration of live agents, and setup of real channel/auth bindings. That expands the blast radius from local file generation to operational deployment, credential handling, and live message routing, which can disrupt existing agents or expose secrets if followed automatically.
