Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill exposes file upload, download, and deletion operations for images, videos, documents, and ZIP archives without any safety guidance about sensitive data, malware risk, retention, or authorization checks. In an agent setting, this can lead users or autonomous systems to upload confidential files or process untrusted attachments without understanding privacy and security consequences.
