Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly documents a path to retrieve full unmasked card number, CVV, and expiry, but it does not require strong user-facing safeguards such as explicit consent, redaction-by-default, anti-replay checks, or a prohibition on displaying the data back in chat. In an agent context, this is dangerous because PAN/CVV are highly sensitive payment credentials, and an over-permissive or socially engineered request could cause the agent to disclose them directly into conversation logs or other downstream systems.
