Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to read and persist user preferences in MEMORY.md without any explicit consent flow, retention limits, or privacy notice near the storage behavior. This can cause unintended collection and reuse of sensitive preference data across sessions, especially in a fortune-telling context where users may disclose personal beliefs, plans, or life concerns.
