Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The skill explicitly documents raw proxy requests to the live Stripe API without warning that these calls can create, update, or delete production data. In an agent setting, this increases the chance of unreviewed state-changing operations against real billing resources, especially when the model falls back from prebuilt actions to direct API calls.
