Missing User Warnings
Medium
- Confidence
- 86% confidence
- Finding
- The skill explicitly advertises destructive operations such as deleting drive items and list items but provides no guidance to require user confirmation, scope checks, or safeguards before execution. In an agentic context, this increases the risk of accidental or unauthorized destructive actions against production SharePoint content, especially if a model infers deletion as a valid way to satisfy a user request.
