Missing User Warnings
Low
- Confidence
- 91% confidence
- Finding
- The documentation explicitly encourages loading remote images via arbitrary HTTPS URLs but does not mention that doing so causes outbound requests to third-party hosts during preview/rendering. This can leak IP address, timing, and possibly sensitive URL-derived identifiers, and may create supply-chain or reliability risks if external assets change or disappear.
