Missing User Warnings
Medium
- Confidence
- 72% confidence
- Finding
- The workflow recommends automatically querying Moss on each user message and injecting retrieval context, but it does not warn that user prompts may be transmitted to external or cloud-backed retrieval services depending on deployment. In voice-agent and conversational settings, this can lead to unintentional processing of sensitive user data and increases privacy and data-governance risk.
