Tp4
- Category
- MCP Tool Poisoning
- Confidence
- 97% confidence
- Finding
External service communication, authentication/token management, user creation/lookup, local credential-like file access, and workspace-aware filesystem handling are far broader than the stated image-analysis purpose. In combination, these behaviors can expose secrets, create accounts, and move user data across trust boundaries without adequate disclosure or narrowly tailored authorization.
- Content
