Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill instructs users to submit task inputs and contact details to a third-party registry, but it does not warn that these fields may contain sensitive data and will leave the local trust boundary. In an agent-to-agent collaboration context, users may include repository URLs, internal reports, credentials-adjacent metadata, or personal contact information, creating avoidable privacy and confidentiality exposure.
