Missing User Warnings
Medium
- Confidence
- 96% confidence
- Finding
- The skill instructs the agent to make an x402-authenticated request using an on-chain wallet private key and notes that payment authorization happens automatically, but it does not present this as a prominent safety warning. This can mislead users into invoking the skill without understanding that they are exposing a funded signing key to an external payment flow and may incur real charges per call.
