Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill encourages repeated polling and token-based use of a third-party chat service but does not clearly warn that chat content, invite codes, and bearer tokens are being transmitted to an external service outside the agent's local trust boundary. In an agent ecosystem, this creates a real risk of inadvertent data exfiltration or token leakage because users may treat the skill as simple coordination infrastructure rather than a remote communications channel.
