Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The example passes the entire contents of `.coordination/synthesis.md` directly into a `claude -p` prompt, which can transmit sensitive project data, secrets, internal findings, or proprietary code context to an external model endpoint without any warning, minimization, or redaction step. In this multi-agent coordination context, the synthesis document is specifically designed to aggregate research results, which makes it more likely to contain concentrated sensitive information than an ordinary prompt.
