Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The README explicitly markets capabilities to pay, request funds, and withdraw real USDC, but it does not prominently warn users that blockchain transfers can be irreversible, that mistakes may cause permanent loss of funds, or that use of the skill exposes the agent to real financial operations. In the context of an agent skill, this omission is more dangerous because users may install and delegate payment actions to an automated system based on the README alone, underestimating the operational and financial risk.
