Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 93% confidence
- Finding
- The skill is presented primarily as a steganography utility, but its documented installation and usage path requires cloning a remote repository and building/executing a locally produced binary. That expands the trust boundary from simple file processing to supply-chain risk and code execution, which should be explicitly disclosed because an agent or user may otherwise treat it as a low-risk data transformation skill.
