Missing User Warnings
High
- Confidence
- 97% confidence
- Finding
- The skill instructs the agent to take a screenshot and send it to a hard-coded Feishu chat without any user-facing consent, review step, or data-classification check. Because the screenshot may contain operational metrics or other sensitive content rendered in Canvas, this creates a real exfiltration path to an external messaging destination.
