Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The README states that the reporter files bugs and notifies teams, but it does not clearly warn that test results, logs, screenshots, and related QA metadata may leave the local agent boundary and be sent to third-party systems. In a QA pipeline, those artifacts often contain sensitive code context, internal URLs, stack traces, and sometimes credentials or personal data, so silent external disclosure creates a real data-leak risk.
