Vague Triggers
Medium
- Confidence
- 92% confidence
- Finding
- The trigger phrase 'Audit a web app' is broad enough to match many requests outside the narrow purpose of console error scanning, potentially causing this skill to activate for general security, code quality, or application review tasks. In an agent setting, overly broad invocation language can route unrelated prompts into a tool that installs packages, runs scans, and makes assumptions about target scope, increasing the chance of unintended actions.
