Missing User Warnings
Medium
- Confidence
- 86% confidence
- Finding
- The README instructs users to send requests and credentials to Baidu's external Qianfan endpoint, but it does not clearly warn that prompts, metadata, and potentially sensitive data will leave the local environment and be processed by a third party. In an agent skill context, this omission can lead users to unknowingly route proprietary or regulated data to an external provider, creating privacy, compliance, and data-governance risk.
