Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 82% confidence
- Finding
- The top-level description frames the skill as only a deprecated pointer to a successor, but the embedded behavior indicates it may inspect local files, parse `references/canon.json`, validate content in `verifier_usage.md`, and print values derived from local artifacts. This mismatch can mislead users and security tooling about what the skill actually does, reducing informed consent and increasing the chance of unintended local data exposure or trust abuse.
