Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill sends query text and indexed document/chunk text to remote Bailian embedding and rerank APIs, which can include sensitive local knowledge-base contents and user prompts. In a local KB tool, this is security-relevant because operators may assume processing is local; undisclosed off-host transmission can expose proprietary, regulated, or personal data to a third party.
