Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill sends user-provided decision content, option text, and free-form context directly to an LLM in generateOptions without any consent gate, minimization, or disclosure. Because decision-support workflows often contain sensitive business, financial, legal, or personal details, this can expose confidential information to an external model provider unexpectedly.
