Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill explicitly directs the agent to persist the user's exact words to disk immediately, which can capture secrets, personal data, credentials, or regulated content without consent, minimization, or redaction. Because this is a memory/persistence skill, the context makes the issue more dangerous: it normalizes broad retention as a default behavior across sessions and increases the chance of later unintended disclosure.
