Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 81% confidence
- Finding
- The skill is described primarily as natural-language Shopify management, but the documented behavior includes a much broader and more powerful admin surface: theme code edits, media/file uploads, metafield changes, refunds, inventory updates, and live store modification. This mismatch can cause users or supervising agents to grant trust and credentials under an incomplete understanding of the skill's actual authority.
