Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 98% confidence
- Finding
- The skill promises a constrained, explicit-user-invoked deep-analysis workflow, but the implemented behavior reportedly auto-triggers on broad keywords and does not actually perform the described search, analysis, or simulation pipeline. This mismatch is dangerous because users and higher-level agents may rely on the declared safeguards and capabilities, causing unintended invocation, misleading outputs, or policy bypass through a skill that behaves differently than advertised.
