Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill explicitly encourages sending prompts to a third-party multi-provider AI gateway but does not disclose that user input and generated outputs may leave the local environment and be processed by external services. This can lead to unintended disclosure of sensitive data, especially because users may assume a local or single-provider workflow and may not realize prompts could be routed across multiple downstream providers.
