Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill instructs the agent to persist client requests, mission details, and business records under ~/.cashclaw without any consent, retention limits, minimization rules, or privacy notice. Because client requests may contain personal, financial, or business-sensitive information, this creates unnecessary long-term exposure if the host is shared, compromised, or later accessed by other tools.
