Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The skill explicitly instructs the user to run a deployment script that clones a remote repository into /root and starts backend/frontend services, but it does not warn that this will modify system state, execute code from an external source, and run processes on the local host. In an agent-skill context, this is risky because users may treat the skill as a safe helper and trigger privileged changes without understanding the trust and persistence implications.
