Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The script transmits the user’s prompt and any supplied input images to Google’s external Gemini API, but it does not provide an explicit privacy or data-transmission warning at the point of use. In an agent-skill context, users may reasonably assume local processing, so sensitive prompts or images could be unintentionally disclosed to a third party.
