Context-Inappropriate Capability
Medium
- Confidence
- 94% confidence
- Finding
- Requiring an open-id tied to a username or phone number for basic plant image analysis collects personally identifiable information that is not necessary for the core function. Coupling that identifier with cloud history lookup creates an unnecessary identity-to-data linkage that could expose past reports or enable account correlation.
