Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 87% confidence
- Finding
- The skill description presents the capability as simple receipt processing and logging, but the instructions authorize broader side effects: duplicate checks against an existing spreadsheet, creation of multiple tabs, summary/chart generation, local trace-file writes, and deletion of the default Sheet1 tab. This mismatch can cause users to authorize the skill without understanding that it will materially modify spreadsheet structure and local state beyond adding one expense row.
