Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill advertises 'always-on' recording of all agent activity but does not present any explicit privacy warning, consent flow, retention policy, or notice about potentially sensitive content being captured. Because agent activity may include prompts, tool outputs, file paths, secrets, or personal data, silent continuous logging creates a real privacy and data-protection risk even if the feature is intended.
