Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The skill collects and returns recent news articles even though its stated purpose is only to fetch commodity prices. This expands data exposure and behavior beyond the declared scope, which can surprise downstream users or agents and create unnecessary external-content ingestion risks, including prompt/content injection from untrusted article metadata or links.
