Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The skill documents a generic proxy request mechanism that supports destructive HTTP verbs such as DELETE, PUT, and PATCH without requiring confirmation or warning about modifying or deleting remote data. In an agent context, this increases the chance that an LLM could perform unsafe state-changing operations against a live Swiftype account based on ambiguous prompts or reasoning mistakes.
