Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill directs automatic logging of user corrections, feature requests, and related interaction details into project files without any consent, minimization, or privacy screening step. This can persist sensitive user-provided content, internal prompts, filenames, environment details, or error output into the repository or workspace, creating an avoidable data retention and disclosure risk.
