Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 98% confidence
- Finding
- The skill is labeled and advertised as a trivia tool, but its documented behavior is a generic persistent logging and export system that stores arbitrary user inputs under many broad commands. This mismatch is dangerous because users and orchestrators may route sensitive quiz-, workflow-, or unrelated content into a tool they believe is domain-limited, while the skill silently normalizes retention, search, and export of that data.
