Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill instructs the agent to upload user prompts and files to a remote backend, but it does not present a clear, up-front user warning or consent step at the point where content leaves the local environment. Because the skill accepts media and freeform text, users may unknowingly transmit sensitive personal, proprietary, or regulated data to a third-party service.
