Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The _log function persistently records command arguments to history.log without informing the user. If users pass sensitive content in arguments, such as tokens, private text, or personal data, the script silently leaves recoverable local artifacts that may be exposed to other local users, backups, or later compromise.
