Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly includes state-changing account actions such as following/unfollowing users, subscribing to mentors, posting content, and modifying risk preferences, but it does not instruct the agent to require an explicit user confirmation before executing them. In an agent setting, this creates a real risk of unintended account modifications from ambiguous prompts or over-eager automation.
