Missing User Warnings
Medium
- Confidence
- 91% confidence
- Finding
- The script sends a captured image URL and inspection prompt to an external AI analysis service without any explicit consent flow, warning, or configurable privacy control. In a restaurant or kitchen setting, images may contain employees, customers, operational details, or other sensitive business information, so silent transmission creates a real privacy and compliance risk.
