Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The skill explicitly instructs use of generic proxy requests, including POST, PUT, PATCH, and DELETE, without any warning or guardrails around modifying live ERP records. In an ERP context, this can lead to accidental deletion, inventory corruption, order changes, or financial workflow disruption if an agent uses the proxy directly without confirmation or endpoint validation.
