Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill documents destructive and externally visible accounting actions such as deleting invoices, voiding invoices, emailing invoices, and matching bank transactions, but it does not instruct the agent to obtain explicit user confirmation before performing them. In an agent setting, this increases the risk of accidental financial changes or customer-facing actions being executed from ambiguous prompts.
