Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill directs the agent to run state-changing commands like `soul possess <name> --yes` and `soul path /path/to/SOUL.md` without requiring an explicit warning that these commands modify local configuration and personality state. In an agent setting, auto-confirming such actions increases the risk of unintended or socially engineered changes to local SOUL.md state, especially because possession can implicitly download content from a remote registry.
