Missing User Warnings
Medium
- Confidence
- 84% confidence
- Finding
- The skill repeatedly instructs the agent to send node identifiers, task IDs, and task activity to a third-party service, but it does not disclose the privacy, telemetry, or trust implications of doing so. This is dangerous because users may unknowingly expose operational metadata and automate interactions with an external platform without consent, visibility, or data-handling safeguards.
