Missing User Warnings
Medium
- Confidence
- 96% confidence
- Finding
- The skill instructs the agent to relay the user's request verbatim and upload provided files to a hosted Pexo backend, but it does not prominently warn that prompts, URLs, screenshots, and other media are transmitted to an external third-party service. Users may disclose confidential product plans, credentials in screenshots, or proprietary media without realizing that data leaves the local environment and is stored/processed remotely.
