Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 92% confidence
- Finding
- The skill is presented as a simple self-improvement/reminder mechanism, but the described behavior extends into auto-detection, hook-based inspection of tool output, skill extraction, benchmarking, and external notifications. That gap reduces informed consent and can cause operators to enable broader data collection or execution pathways than they expected, increasing the chance of privacy leaks or unsafe automation.
