Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill automates sending user prompts to a third-party website, downloads generated images, and reposts them to Discord, but it does not clearly warn users that their input and outputs leave the local agent environment. This creates a real privacy and data-handling risk because users may provide sensitive prompts or expect local-only processing without realizing content is transmitted to external services.
