Missing User Warnings
Medium
- Confidence
- 90% confidence
- Finding
- The skill explicitly instructs the agent to modify a local memory file and execute a shell script as part of normal operation, but it provides no user-facing consent, safety gating, or validation of what the script will do. In an agent environment, instructions to write files and run automation can cause unintended local state changes or command execution, especially if the script path or contents are later altered or implicitly trusted.
