Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- This script transmits meeting-derived content, participant names, and extracted action items to third-party LLM APIs using API keys from environment variables. For a meeting-transcript skill, that can expose sensitive business discussions, decisions, and operational tasks outside the local environment, and the script provides no explicit consent gate or privacy control at the point of transmission.
