Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The skill explicitly directs the agent to create and persist multiple state files, including self/social models and emotional memory, without any user-facing notice, consent, retention limits, or data-minimization guidance. In practice this can lead to silent profiling and storage of sensitive conversational inferences across sessions, which is especially risky because the stored data includes relational trust, attachment, threat, and psychological-style attributes.
