Description-Behavior Mismatch
Medium
- Confidence
- 88% confidence
- Finding
- The HTTP verification section expands from CAS/API guidance into operational SSH/SCP remote file deployment, which grants a generic remote write capability to user-managed servers. Even though the example includes an SSRF guard for the verification fetch, the dangerous action is the documented remote upload itself: if an agent follows this pattern with user-supplied server, user, web_root, or file name inputs, it could write arbitrary files to unintended hosts or paths.
