Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The skill advertises wallet creation, borrowing, and repayment flows tied to external services and API keys, but it does not clearly warn users that these actions may interact with real third-party financial infrastructure or move funds. In an agent setting, ambiguous financial operations can lead to unintended transactions, unsafe credential use, or users invoking sensitive commands without understanding the consequences.
