Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill instructs the agent to save output files into the user's current working directory by default, which creates files without an explicit opt-in step. In an agent setting, implicit file writes can surprise users, overwrite nearby work despite collision-avoidance logic, or be abused to leave unintended artifacts in sensitive repositories or shared directories.
