Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill instructs users to upload local files and send prompts or reference image URLs to a third-party API, but it does not clearly warn that user content will leave the local environment. This creates a real privacy and data-handling risk because users may unknowingly transmit sensitive images, metadata, or confidential prompt content to an external service.
