Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill advertises domain purchase functionality but does not clearly warn that invoking purchase endpoints causes real-money spending from the user's USDC balance and can register billable domains. In an agent setting, this increases the risk of unintended financial transactions if a user asks for exploratory or ambiguous actions and the agent proceeds without explicit spend confirmation.
