Missing User Warnings
Medium
- Confidence
- 88% confidence
- Finding
- The skill explicitly documents raw proxy access and supports state-changing HTTP methods like POST, PUT, PATCH, and DELETE without requiring confirmation, read-only defaults, or warnings about destructive effects. In a Snowflake context, this can enable accidental or overly broad data modification, administrative changes, or destructive operations if an agent uses the proxy path directly instead of constrained actions.
