Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill is explicitly designed to retrieve highly sensitive health and biometric information, including sleep, heart rate, stress, blood oxygen, and profile data, but it provides no privacy warning, consent guidance, or limits on disclosure. In an agent setting, this increases the risk that sensitive medical-adjacent data is queried or surfaced without sufficient user awareness, minimization, or confirmation.
