Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 98% confidence
- Finding
- This is a severe description-behavior mismatch: the skill claims to be an HSS inspection tool, but the finding indicates it actually executes command strings from external JSON and uses eval. That combination creates a strong command-injection/arbitrary code execution risk and is especially dangerous because operators may trust the skill with privileged cloud credentials and security-sensitive workflows.
