External Transmission
- Category
- Data Exfiltration
- Confidence
- 97% confidence
- Finding
The skill explicitly instructs users to upload documents containing highly sensitive PII to an external third-party service. Even though this is the advertised purpose, it creates a real confidentiality and compliance risk because raw medical, financial, and identity data leaves the local trust boundary before redaction occurs.
- Content
Option A: With Webhook (Recommended)
bash curl -X POST https://api.deepread.tech/v1/pii/redact \ -H "X-API-Key: $DEEPREAD_API_KEY" \ -F "file=@document.pdf" \ -F "webhook_url=https://your-app.com/webhooks/pii"
