Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The guide explicitly says the AI can directly execute package installation commands, which causes network access and modifies the environment by installing software. In an agent setting, this is risky because it normalizes state-changing actions without requiring user confirmation or clearly warning about side effects, increasing the chance of unintended system modification or supply-chain exposure.
