Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 95% confidence
- Finding
- The skill presents itself as a brainstorming/design-only workflow, but its instructions introduce a browser-based 'visual companion' with external state, local URL opening, session handling, and backend interaction per the static finding. That is a meaningful capability expansion beyond the declared purpose, which can mislead operators into approving tool use or local service activity they did not expect from a planning skill.
