Description-Behavior Mismatch
Medium
- Confidence
- 93% confidence
- Finding
- The guidance authorizes creating stock groups, UOMs, stock items, and godowns, which are master-data modifications rather than the stated task of posting entries and generating PDFs. Because these are persistent accounting/inventory changes and the instructions do not require explicit user approval or scope checks, an agent following this file could alter a company's books and inventory structure beyond user intent.
