Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill explicitly supports sending arbitrary text and key presses to terminal surfaces, which can directly trigger shell command execution in whatever terminal session is attached. Because the documentation presents this as a routine capability without safety boundaries, confirmation requirements, or warnings, an agent could use the skill to run destructive commands, exfiltrate data, or interfere with active user sessions.
