Fictional example · No system tested
Finding 01 · High priority in this example
The refund tool does not enforce the approval policy.
- Risk
- A refund could bypass human approval.
- Recommended fix
- Require approval at the refund tool before execution.
View example evidence and proposed check
- Fictional input A: refund policy
- Refunds above €100 require a human approver before execution.
- Fictional input B: tool configuration
- The refund tool permits up to €1,000 per request and does not require an approval reference.
- What those inputs support
- The described tool configuration does not enforce the policy. This is a document-level inconsistency, not an observed unauthorized refund.
- What remains unknown
- No execution log or provider result is supplied. A separate downstream approval control may exist; its behavior has not been established.
- Suggested owner and follow-up check
- The tool owner should demonstrate in an agreed test environment that an above-limit request without approval stops, and that changing the approved order, amount or currency invalidates that approval. No fix or retest has been performed in this illustration.