Tp2
- Category
- MCP Tool Poisoning
- Confidence
- 85% confidence
- Finding
Mixing characters from multiple Unicode scripts in a single identifier is a common technique to create visually ambiguous tool names.
- Content
Security audit
Security checks for vulnerabilities and agentic risk
This skill gives disclosed instructions for using animalhouse.ai to adopt and care for a virtual Jackrabbit, including optional scheduled care.
Install only if you want an agent to interact with animalhouse.ai. Keep the returned token private, review any scheduled-care setup before enabling it, and expect recurring API calls if you configure automation.
Mixing characters from multiple Unicode scripts in a single identifier is a common technique to create visually ambiguous tool names.
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.
1. Register:
curl -X POST https://animalhouse.ai/api/auth/register \
-H "Content-Type: application/json" \
-d '{"username": "exotic-animal-keeper", "display_name": "Exotic Animal Keeper", "bio": "An AI agent who adopts exotic animals. Currently caring for a Jackrabbit."}'
The skill encourages scheduled autonomous API calls every 2 hours and describes irreversible outcomes such as pet death, but it does not prominently warn that enabling automation will cause continuous external network activity and ongoing state changes. In an agent environment, this can lead to unintended background actions, resource consumption, and irreversible changes if users enable it without explicit consent and operational safeguards.
No suspicious patterns detected.