Missing User Warnings
Medium
- Confidence
- 90% confidence
- Finding
- The skill includes workflows that send user-provided text and entire document contents to remote services, including third-party model endpoints, without an explicit warning or consent cue. This creates a real privacy and data-handling risk because users may paste sensitive, proprietary, or regulated content believing processing is local or otherwise undisclosed.
