Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The README explicitly advertises automatic attachment of generated images to downstream OpenClaw messages, but it does not warn users that prompts or generated files may be propagated beyond the local tool boundary. In agent workflows, this can cause unintended disclosure of sensitive or misleading content if images are auto-attached without operator review.
