Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill encourages users to summarize URLs, local files, audio, and YouTube content without disclosing that the underlying CLI may transmit user-supplied content to an external service or process sensitive material outside the local environment. It also advertises `--output` without warning that summaries may be written to disk, which can create unintended persistence of sensitive data and metadata.
