Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The README explicitly states that PR review results will be published to Feishu, an external collaboration platform, but does not warn users that code-derived content, review comments, or potentially sensitive repository metadata may leave the original GitHub context. In a PR-analysis skill, this increases the risk of unintentional data disclosure, especially for private repositories, security findings, or proprietary code details.
