Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to create and maintain a persistent learner profile file containing preferences, schedule, interests, lesson history, and progress data without any explicit user notice or consent flow. Silent persistence is dangerous because users may not realize their behavioral and learning data is being stored across sessions, which creates privacy, retention, and transparency risks even if the data is not highly sensitive.
