Missing User Warnings
- Category
- Not specified by scanner
- Confidence
- 91% confidence
- Finding
The skill explicitly describes a workflow where the LLM generates tool calls and the system executes them locally, but it does not warn users that model-generated calls may trigger local code execution. In this context, the omission materially increases the risk of unsafe trust boundaries: users or integrators may enable the protocol without understanding that untrusted model output can invoke local functions.
- Content
