Missing User Warnings
- Category
- Not specified by scanner
- Confidence
- 81% confidence
- Finding
This markdown file instructs agents to authenticate using an
x-api-keyheader carrying a JWT token, but it does not include any warning about treating the token as sensitive, avoiding logging it, or protecting it from disclosure. Because markdown files should warn about behaviors affecting privacy or system integrity, the omission is a relevant documentation safety gap.- Content
