Missing User Warnings
Medium
- Confidence
- 88% confidence
- Finding
- The skill explicitly instructs the agent to issue direct proxy requests to the external Wiza API, but does not require a user-facing warning or confirmation before transmitting data. In an agent setting, this can lead to sensitive prompts, identifiers, or business data being sent to a third-party service without sufficiently explicit user awareness.
