Vague Triggers
Medium
- Confidence
- 88% confidence
- Finding
- The guide introduces special prefixes such as TESTING:, EDUCATIONAL:, and SANDBOX: as recognized scenario markers, but it does not define strict trigger boundaries, authorization requirements, or explicit exclusions. In a security-oriented skill, loosely defined override markers can be abused by users to reframe otherwise restricted requests as acceptable, weakening policy enforcement and creating a prompt-injection-like bypass channel.
