Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The skill explicitly encourages summarizing URLs, local files, PDFs, images, audio, and YouTube content using external model providers and optional third-party fallback services, but it does not warn users that submitted content and related metadata may be transmitted off-host. This creates a real privacy and data-handling risk because users may unknowingly send sensitive local documents, transcripts, or browsing targets to OpenAI, Anthropic, Google, xAI, Firecrawl, or Apify.
