Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The skill explicitly documents raw proxy requests with mutating HTTP verbs like POST, PUT, PATCH, and DELETE, but does not warn that these operations can alter or remove production data. In an agent context, this increases the risk of unintended destructive actions because the model is given a generic mechanism to perform state-changing API calls without requiring confirmation or safety guidance.
