Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill explicitly instructs the agent to use a generic authenticated proxy for arbitrary 1C-Bitrix API paths, including support for POST, PUT, PATCH, and DELETE, but provides no guardrails around user confirmation, scope restriction, or sensitive data handling. In an agent setting, this can enable unintended data exfiltration or destructive state changes if the model chooses a raw request path instead of safer predefined actions.
