Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The README explicitly promotes automatically uploading local files into Feishu chats, but it does not warn users that absolute paths may reference sensitive local data and that including those paths in a reply causes real exfiltration to an external chat platform. In an agent setting, this increases the chance of accidental disclosure of confidential documents, exports, or files outside the intended task scope.
