Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 94% confidence
- Finding
- The declared purpose is narrowly framed as meeting-risk preflight, but the referenced behavior indicates broader audit-style capabilities such as directory enumeration, data-field inspection, pattern/secret scanning, and package structure checking. This mismatch is dangerous because users and policy engines may trust the skill with meeting notes while it can actually inspect unrelated local content, increasing the chance of over-collection, privacy violations, or misuse under misleading pretenses.
