Tp4
- Category
- MCP Tool Poisoning
- Confidence
- 99% confidence
- Finding
The mismatch between claimed transcription/analysis functionality and behavior that instead accesses local package metadata and lacks the described processing is a trust-boundary violation. While not inherently code-execution, deceptive or inaccurate capability claims can cause unsafe invocation decisions and mis-scoped permissions in an agent ecosystem.
- Content
