Missing User Warnings
Medium
- Confidence
- 96% confidence
- Finding
- The listed tools include actions with real account and transactional side effects, such as binding coupons, creating delivery addresses, creating food orders, and redeeming mall points, but the skill provides no prominent warning that these may affect a real user account or incur financial/logistical consequences. In an agent setting, this can lead to unintended purchases, address creation, coupon redemption, or loyalty-point consumption if invoked without explicit, informed user consent.
