Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The script reads arbitrary local PDF/DOC/DOCX files and uploads their full contents to an external service over HTTPS using a bearer token, but it provides no explicit warning, confirmation, allowlist restriction, or dry-run step before exfiltrating document data. In an agent-skill context, this is more dangerous because the tool is specifically designed for automation, so users or upstream agents may trigger uploads on sensitive local documents without fully appreciating that the data is leaving the host.
