Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill instructs the user to make privileged system changes, expose an internal service on the public internet, and alter security controls such as SELinux, but it does not clearly warn about service exposure, downtime, firewall implications, or the need to validate that the backend is safe to publish. In a security-sensitive deployment skill, omission of these warnings can lead users to unintentionally expose an unauthenticated or weakly protected service.
