Missing User Warnings
Medium
- Confidence
- 90% confidence
- Finding
- The skill explicitly documents a generic proxy mechanism supporting GET, POST, PUT, PATCH, and DELETE against the remote API without warning that these operations may modify or delete production data. In an agent setting, this increases the chance that the model performs destructive actions through raw requests without explicit user confirmation or understanding of side effects.
