Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill strongly promotes automatic tracing, logging, and uploads to Galileo, and multiple examples include raw prompts, model outputs, retriever contents, and tool inputs/outputs. Without an explicit warning that this data may be transmitted to a third-party service, users may unknowingly send sensitive prompts, secrets, personal data, or proprietary documents off-platform, which is a real confidentiality and compliance risk in an observability SDK context.
