Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The chat API sends user-provided prompts and conversation content to NVIDIA's external service, but the code path itself provides no disclosure or consent mechanism at the point of transmission. In this skill's context, transmitting prompts to a third-party API is expected functionality, but it still creates a privacy risk because users may unknowingly send sensitive data off-host.
