Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The documentation explicitly encourages storing user preferences, habits, decisions, and other personal context, but it does not pair that guidance with clear consent, retention, minimization, or access-control requirements. In an agent-memory skill, this can lead to silent accumulation of sensitive profile data and privacy harm, especially because memory is persistent and may later be surfaced or exported in unrelated contexts.
