Vague Triggers
Medium
- Confidence
- 89% confidence
- Finding
- The skill defines broad natural-language triggers like 'publish this', 'share this as a link', and 'put this on the web' without requiring an explicit confirmation step. That can cause accidental invocation on sensitive content, leading to unintended public disclosure when the skill uploads data to an external service and returns a public URL.
