Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly instructs the agent to run actions and send direct proxy requests to the external Sellsy API, including potentially state-changing HTTP methods, without requiring confirmation, scoping, or warning about data transmission and modification. In an agent setting, this can lead to unintended writes, deletions, or disclosure of CRM data to an external service based on ambiguous prompts.
