Missing User Warnings
Medium
- Confidence
- 84% confidence
- Finding
- The skill explicitly instructs users to provide a user-controlled base_url and api_key, and says prompts will be sent to that remote endpoint, but it does not warn that prompts and credentials are disclosed to whatever service is configured. In this context, the endpoint is fully user-supplied and the skill writes returned data locally, so the main risk is unintended data disclosure, use of untrusted providers, and integrity issues from relying on arbitrary remote image content.
