Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill exposes multiple state-changing CRM capabilities such as creating and updating contacts, accounts, opportunities, tasks, and notes, but does not clearly warn that using these actions can modify or overwrite user business data. In an agentic context, that omission increases the chance of unintended writes, especially if the agent interprets a vague request and executes a destructive or business-impacting action without explicit confirmation.
