Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 92% confidence
- Finding
- The declared description frames the skill as a review/grading aid, but the documented commands also create, modify, and delete cards and persist review data in local storage. This mismatch can cause users or orchestrators to authorize the skill under a narrower trust model than its actual behavior, leading to unintended data modification and retention.
