Context-Inappropriate Capability
Medium
- Confidence
- 83% confidence
- Finding
- The generated client class includes live authentication header handling and automatic retry behavior after 401 responses, including a placeholder token refresh flow. This is dangerous because consumers may copy the pattern into production with incomplete refresh logic, causing insecure token handling, unintended request replay, or retry loops against authenticated endpoints.
