Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill explicitly documents raw proxy requests with arbitrary HTTP methods including POST, PUT, PATCH, and DELETE, but does not warn that these can alter or destroy LocalStack resources. In an agent context, this increases the chance that the model performs state-changing operations without clear user awareness or confirmation, especially because LocalStack often mirrors cloud-management workflows.
