Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill explicitly instructs the agent to query customer context and review customer health, usage, and feedback data without any visible consent, minimization, or warning that sensitive customer information may be accessed. In a customer-success context, this can expose account, behavioral, contractual, or support-related data to users who may not realize the skill will retrieve and process such information.
