Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill explicitly instructs the agent to create and read persistent files under the user's home directory (`~/greece/` and `~/greece/memory.md`) without any disclosure, consent, or explanation to the user. This creates a privacy and persistence risk because trip preferences and constraints are stored across sessions, and the agent may access prior data the user did not knowingly authorize it to retain or reuse.
