Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly documents a generic proxy request mechanism supporting POST, PUT, PATCH, and DELETE without emphasizing confirmation or safeguards for state-changing operations. In an agent setting, this can normalize direct arbitrary API access and increase the chance of unintended modification or deletion of YoPrint records if the model chooses proxy calls over safer scoped actions.
