Missing User Warnings
Medium
- Confidence
- 97% confidence
- Finding
- The skill instructs the agent to create, read, and update a persistent memory file in the user's home directory and to store trip preferences, dietary restrictions, and family-travel details without any explicit user-facing notice or consent flow. This creates a privacy risk because personal data is retained across sessions invisibly, and users may not reasonably expect persistent local storage from a travel guidance skill.
