Missing User Warnings
Medium
- Confidence
- 87% confidence
- Finding
- The examples encourage exposing rich project, task, and user-role data to agent-readable context without any guidance on data minimization, redaction, consent, or sensitivity classification. In an agent-integration skill, this can normalize passing potentially sensitive application state to LLM backends or external runtimes, increasing the risk of privacy leaks, over-sharing, and unintended retention by downstream services.
