Missing User Warnings
Medium
- Confidence
- 89% confidence
- Finding
- The README shows wallet creation, unlocking, feedback submission, and agent registration flows that can trigger signing or on-chain spending, but it does not place a clear, prominent warning near those examples about private key handling, password sensitivity, or the possibility of spending real funds on mainnet. In an agent/MCP context, users may copy commands verbatim or let automation invoke these tools, increasing the chance of unintended transactions or unsafe secret handling.
