Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill clearly relies on a third-party remote service and an API key, but it does not warn users that prompts, uploaded files, business metrics, investor data, images, or other presentation content may be transmitted off-platform to CellCog. Because the examples encourage use for pitch decks, board decks, financials, and customer-facing materials, users could unknowingly send sensitive or confidential information to an external provider.
