Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 95% confidence
- Finding
- The skill metadata advertises a curated financial ML resource list, but the content actually defines a general-purpose local logging and export tool that persistently stores user inputs. This mismatch is dangerous because users and host systems may grant trust or invoke the skill under false assumptions, while sensitive operational or financial data is silently retained and made searchable/exportable.
