Tp4
- Category
- MCP Tool Poisoning
- Confidence
- 95% confidence
- Finding
The documented purpose presents the skill as crypto intelligence, but the detected behavior includes generic forwarding of user queries to an external service with undeclared outbound network access. That mismatch is dangerous because users may provide sensitive or broader conversational content under the assumption the skill is narrowly domain-specific, while the implementation may transmit it to a third party.
- Content
