Missing User Warnings
Medium
- Confidence
- 86% confidence
- Finding
- The HEARTBEAT example instructs an agent to routinely fetch unread emails and summarize them to an owner, but it does not warn about handling sensitive content, sender privacy, or consent. In an agent setting, this can normalize automatic exfiltration of email contents or metadata to another party without adequate controls.
