Missing User Warnings
Medium
- Confidence
- 96% confidence
- Finding
- The skill explicitly encourages summarizing URLs, local files, and YouTube links using external AI providers and optional fallback services, but it does not warn users that submitted content may be transmitted off-host to third-party services. This creates a real privacy and data-handling risk because users may provide sensitive local documents or internal URLs without understanding that their contents could be sent to OpenAI, Google, Anthropic, xAI, Firecrawl, or Apify.
