Missing User Warnings
Medium
- Confidence
- 87% confidence
- Finding
- The skill advertises operational commands that can create, close, reopen, register, or otherwise modify live payment resources, but it does not clearly warn agents or users that these actions are state-changing and may affect production invoices, payments, customers, and webhooks. In an agent context, this increases the chance of unintended destructive or financially significant actions being executed against a real merchant account.
