Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill exposes many commands that send data to remote services, message other users, upload files, persist memory, and delete or modify remote/local state, but it does not provide explicit safety guidance about privacy, consent, irreversible actions, or scoping. In an agent setting, that omission is risky because an autonomous agent may invoke these capabilities on sensitive inputs or perform destructive actions without meaningful user confirmation.
