Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to call an external API via scripts/main.py but does not clearly warn the user that their query will trigger an outbound request. This can undermine informed consent and privacy expectations, especially if user-supplied product names or related context are transmitted to external services.
