Missing User Warnings
Medium
- Confidence
- 92% confidence
- Finding
- The flow instructs the agent to immediately POST arbitrary user requests to a generation endpoint while the server implicitly reads database credentials from .env.local, but it provides no warning about sensitive data handling, outbound transmission, or least-privilege credential use. In this skill context, that is materially risky because natural-language prompts may contain proprietary business data and the generation pipeline explicitly involves multiple agents, database schema access, and LLM processing, increasing the chance of unintended disclosure or overbroad data access.
