Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill instructs users to send corpus chunks to an API-compatible LLM service but does not warn that source content may leave the local environment and be processed by another service. In a data-synthesis workflow, that content could contain proprietary, regulated, or sensitive text, making silent transmission a meaningful privacy and compliance risk.
