Missing User Warnings
Medium
- Confidence
- 83% confidence
- Finding
- The skill instructs users to send prompts, image URLs, and an API key-authenticated request to a third-party service without a clear privacy and data-handling warning. In this context, users may unknowingly transmit sensitive prompts, proprietary images, or regulated data to an external provider, increasing confidentiality and compliance risk.
