Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill explicitly promotes uploading documents and using search/chat against a managed external SaaS, but it does not clearly warn users that document contents, prompts, and retrieved context may be transmitted to and stored/processed by a third party. In an agent setting, users may pass proprietary, regulated, or personal data assuming the tool is local, which creates confidentiality and compliance risk.
