Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill instructs callers to send a POST request to an external endpoint and notes that requests will be forwarded through a gateway, but it does not clearly warn users that their input will leave the local environment. This can lead to unintentional disclosure of prompts, personal data, or business-sensitive query parameters to third-party infrastructure.
