Missing User Warnings
Medium
- Confidence
- 84% confidence
- Finding
- The skill documents generic action execution and raw proxy requests, including support for POST, PUT, PATCH, and DELETE, without guardrails or warnings about remote side effects. In a data/workflow platform like AirOps, this can enable unintended modification, deletion, or triggering of workflows if an agent follows vague user requests or misinterprets available actions.
