Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill is an admin-side runbook that instructs an agent to create events, campaigns, templates, and frames and to upload assets directly in a live administrative interface, but it provides no guardrails about environment validation, approval, rollback, or the fact that these actions mutate system data. This is dangerous because an automated agent could perform irreversible or unauthorized changes in production/admin systems simply by following the steps, especially given the included browser automation tips for DOM clicking and form submission.
