Missing User Warnings
Medium
- Confidence
- 96% confidence
- Finding
- This skill is explicitly designed to send prompts to external LLM providers and possibly a LiteLLM proxy, yet the description does not warn users that their prompts and other content may leave the local/runtime boundary. Without a clear disclosure, users may provide sensitive source code, credentials, or proprietary data under the false assumption that processing remains internal.
