Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly documents running actions and proxying direct API requests against an identity-verification platform without warning about the sensitivity of the underlying PII and verification data. In this context, absent safeguards can lead an agent to retrieve, transmit, or modify highly sensitive identity records without appropriate user confirmation, minimization, or auditing.
