Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 93% confidence
- Finding
- The skill's declared behavior does not fully disclose material actions and limitations, especially that Bilibili subtitle retrieval may access browser cookies and that transcript content is sent to third-party AI APIs. This kind of mismatch can mislead users into approving actions they would not otherwise consent to, creating privacy and trust risks even if the primary purpose is legitimate.
