Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The setup path performs state-changing actions immediately: it installs npm packages, writes persistent OpenClaw hooks and MCP configuration, and creates a manifest, but the script itself does not require an interactive confirmation or an explicit acknowledgement flag before those mutations occur. In an agent-skill context, this is risky because a caller may trigger durable host changes through natural-language automation, causing unintended local system modification and service integration without clear runtime consent.
