Missing User Warnings
Medium
- Confidence
- 84% confidence
- Finding
- The skill explicitly encourages posting content to multiple third-party platforms and registering with an external marketplace, but provides no warning that user content, account identifiers, and metadata will be transmitted outside the local environment. In an agent setting, this can cause unintended disclosure or unauthorized external actions if a user does not realize the skill performs real networked publishing and registration.
