Natural-Language Policy Violations
Medium
- Confidence
- 97% confidence
- Finding
- The skill explicitly instructs agents that they MUST use `brv` before any work, removing user opt-in and potentially causing unnecessary disclosure of prompts, project context, or files to an external LLM provider. Because `brv query` and `brv curate` are network-capable and process project memory by default, this creates a coercive data-flow risk even when the user did not request memory retrieval or persistence.
