Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill examples instruct users to connect to a remote MCP server and use tools that create signed identity claims and perform transfers, including a sample with `visibility: "public"`, but the description does not prominently warn that data and attestations are sent off-box and may become publicly visible. This can lead operators to disclose plugin hashes, behavioral attestations, handoff context, or agent identifiers under the mistaken assumption these are local trust operations, causing privacy, metadata, and operational exposure.
