Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The _log function records command arguments into a persistent history file without warning or consent. If users pass sensitive values such as queries, file paths, identifiers, or credentials on the command line, those secrets may be stored in plaintext under the user's data directory and later exposed to other local users, backups, support bundles, or forensic collection.
