Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The skill tells the agent to send a user-provided prompt to Alibaba Cloud DashScope but does not clearly warn that user content is transmitted to a third-party cloud service. In context, prompts may contain sensitive personal, proprietary, or regulated information, so lack of disclosure can lead to unintentional data exposure.
