Missing User Warnings
Medium
- Confidence
- 87% confidence
- Finding
- The skill encourages users to upload past engagement results and tracker data into an API-backed workflow without clearly warning that these files may contain sensitive business analytics, campaign performance, or customer-derived operational data. In context, the skill requires ANTHROPIC_API_KEY and explicitly processes prior results, so users may unknowingly transmit commercially sensitive information to an external model provider.
