Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly instructs the agent to autonomously read and reply to DMs, including ongoing conversations, without an explicit privacy warning, consent boundary, or requirement for human approval before accessing message contents. This can expose private communications to automated processing and enable unauthorized outbound responses on behalf of the user, especially because the skill later normalizes handling routine DM conversations autonomously.
