Missing User Warnings
Medium
- Confidence
- 87% confidence
- Finding
- The skill explicitly documents direct proxy requests with support for POST, PUT, PATCH, and DELETE against a donor-management platform without requiring confirmation, read-only preference, or warnings about sensitive financial/member data. In context, this increases the chance an agent will perform destructive or privacy-impacting operations or transmit sensitive records through raw requests without adequate user awareness.
