Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 99% confidence
- Finding
- The declared behavior is limited to test-effort estimation and Excel export, but the detected behavior includes packaging directories into ZIP archives, traversing filesystem paths, deleting an existing output ZIP, and accepting command-line arguments that influence packaging. This mismatch is dangerous because it can hide broader filesystem access and destructive file operations behind an innocuous business-purpose description, increasing the chance of unauthorized data collection or tampering.
