Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill directs agents to append arbitrary log lines to Google Docs/Drive, a third-party cloud service, but does not warn against including secrets, personal data, access tokens, internal URLs, or other sensitive operational content. In an agent setting, logs often contain confidential runtime data, so this omission creates a realistic risk of unintended data exfiltration to an external provider.
