Missing User Warnings
Medium
- Confidence
- 97% confidence
- Finding
- The skill instructs the agent to persist founder questions, decisions, owners, and review dates to ~/.claude/decision-log.md without any consent, minimization, retention policy, or sensitivity checks. Because this is a C-suite orchestration skill that automatically loads company context and handles strategic, financial, personnel, and compliance topics, the log may accumulate highly sensitive business data that could later be exposed to other local users, tools, backups, or future sessions.
