Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 91% confidence
- Finding
- The skill metadata advertises advanced self-improving and security-hardened behavior, but the analyzed behavior instead includes dependency installation, filesystem modification, and shell-based setup actions that are not transparently disclosed. This mismatch is dangerous because users may grant elevated trust or permissions based on the claimed security properties while the skill performs broader setup-side effects and only simulates the advertised protections.
