Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly asks users to upload bank statements and general ledger exports, which commonly contain highly sensitive financial and identifying data, but it provides no privacy notice, minimization guidance, or handling restrictions. In this context, the omission increases the risk of unnecessary disclosure, oversharing, and improper downstream storage or processing of confidential business financial records.
