Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill instructs users to send document image URLs and receive extracted document contents from a remote endpoint, but it does not warn that potentially sensitive documents and derived text may be transmitted to and processed by a third-party service. Because the content includes OCR, classification, extraction, and summarization of up to 500 documents, users could inadvertently expose contracts, reports, IDs, or regulated data without understanding the privacy implications.
