Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 92% confidence
- Finding
- The skill is presented primarily as an Instagram content generator, but its documented behavior also includes persistent local logging, unified history, search, export, and status reporting over stored user content. This creates a transparency and data-handling risk: users may provide sensitive drafts, schedules, campaign details, or personal notes expecting transient generation, while the skill retains them in plain text and makes them easy to enumerate and export.
