Missing User Warnings
Low
- Confidence
- 78% confidence
- Finding
- The script automatically reads local progress and memory JSONL files from disk without explicit user consent, disclosure, or path restrictions beyond fixed filenames. In an agent skill context, silent ingestion of local state can expose sensitive historical data, model traces, or user-derived memory into outputs or downstream processing, especially if operators do not realize the skill accesses persistent local files.
