Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill explicitly invites users to provide URLs or file paths without warning about the sensitivity of local files or the risks of fetching external content. In an agentic environment, this can lead to unintended access to local data, internal paths, or untrusted remote resources, increasing the chance of data exposure or unsafe retrieval behavior.
