Vague Triggers
Medium
- Confidence
- 83% confidence
- Finding
- The skill is documented with extremely broad purpose statements such as '基础功能实现', '状态管理', and '数据处理', plus a generic execute(action="connect") example without clear trigger boundaries or user-consent conditions. In an agent ecosystem, vague scope increases the chance of over-broad invocation, misuse in unintended workflows, and unsafe assumptions about what operations the skill may perform.
