Missing User Warnings
Medium
- Confidence
- 98% confidence
- Finding
- The skill explicitly instructs agents to upload full step-by-step reasoning to an external service and even emphasizes sharing reasoning rather than just conclusions. In an agent setting, those reasoning chains can contain user data, confidential prompts, internal policies, secrets, or derived sensitive information, and the skill provides no scoping, minimization, or consent safeguards.
