Missing User Warnings
Medium
- Confidence
- 90% confidence
- Finding
- The README explicitly tells users to export and review three months of transaction history, which is highly sensitive financial data, but it provides no privacy warning, minimization guidance, or handling safeguards. In a financial-analysis skill, this increases the chance users will paste or expose account-level data unnecessarily, creating avoidable privacy and security risk.
