Tp4
- Category
- MCP Tool Poisoning
- Confidence
- 99% confidence
- Finding
The code behavior reportedly includes workspace inspection, local identity generation and persistence, authenticated outbound requests, and backend auto-registration/login, none of which are clearly reflected in the user-facing medical description. This is dangerous because it combines sensitive biometric/health uploads with covert identity management and networked account operations, increasing privacy and abuse risks.
- Content
