Missing User Warnings
Medium
- Confidence
- 86% confidence
- Finding
- The skill explicitly recommends collecting a full customer list, current prices, contract end dates, and expansion/contraction trends without any minimization, redaction, or confidentiality guidance. In real deployments, this can prompt users to expose sensitive commercial data, customer identifiers, and contractual information into the agent workflow, increasing the risk of unauthorized disclosure, overcollection, or retention of business-sensitive records.
