Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill includes a publishing workflow that renders content, generates images, and pushes a draft to an external platform, but it does not clearly warn that article text, metadata, and local image files will be sent to external tools or a WeChat publishing endpoint. This can lead users or downstream agents to exfiltrate unpublished content or media without explicit awareness or consent, especially in automated workflows.
