Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to search the web, follow landing pages, and download external PDFs without any visible user-facing warning or trust restrictions. In this context, that can lead users to unknowingly trigger requests to untrusted domains, retrieve malicious or deceptive files, or expose metadata/network activity during paper resolution, especially when URLs are user-provided or discovered via search.
