Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 90% confidence
- Finding
- The skill is presented primarily as a learning/error logging utility, but it also instructs the agent to promote entries into persistent agent-context files and to generate new reusable skills from logged content. That expands its effective capabilities from passive note-taking into persistent behavior modification and code/artifact generation, which can surprise users and increase the chance of unsafe or unauthorized changes.
