Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- This wrapper can send sensitive user inputs and optional location fields to a third-party service and then persist the full response locally without a clear runtime warning or consent mechanism. In agent settings, queries may contain personal, proprietary, or contextual data, so silent transmission and disk retention increase privacy and data-handling risk beyond what a user may reasonably expect.
