Missing User Warnings
Medium
- Confidence
- 88% confidence
- Finding
- The skill explicitly instructs the agent to use a generic proxy capable of GET, POST, PUT, PATCH, and DELETE against the Basecamp API, but it does not require confirmation before mutating or potentially irreversible operations. In an agent setting, this increases the chance of unintended writes, deletions, or broad API use beyond the safer pre-defined actions, especially if a user request is ambiguous or prompt-injected.
