Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The documentation tells operators to pass sensitive values such as app_secret and recipient identifiers directly on the command line for network transmission, but provides no explicit warning about credential exposure or privacy risks. Command-line secrets can leak through shell history, process listings, logs, or debugging output, and recipient IDs are potentially sensitive metadata.
