Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 88% confidence
- Finding
- The documentation markets the skill as a smart importer/parser, but it also instructs users to execute SQL dump files directly against databases. That expands the risk from data ingestion to arbitrary SQL execution, which can drop tables, alter privileges, destroy data, or trigger dangerous database-side behaviors if the dump is untrusted. The mismatch makes users more likely to underestimate the danger.
