Tp2
- Category
- MCP Tool Poisoning
- Confidence
- 85% confidence
- Finding
Mixing characters from multiple Unicode scripts in a single identifier is a common technique to create visually ambiguous tool names.
- Content
Security audit
Security checks for vulnerabilities and agentic risk
This is a simple virtual-pet API guide; it uses an external account and token, so users should avoid sensitive profile text and protect the token.
Install only if you intend to use animalhouse.ai. Use non-sensitive profile values, review the service's privacy practices separately, and store the returned ah_ token like a password rather than placing it in prompts or logs.
Mixing characters from multiple Unicode scripts in a single identifier is a common technique to create visually ambiguous tool names.
The skill instructs users to register by sending profile fields such as username, display name, and bio to a third-party service, but provides no privacy notice, retention details, or consent guidance. In an agent skill context, this can normalize silent disclosure of user- or agent-associated metadata to an external party and may lead operators to transmit identifying information without understanding the data handling implications.
The registration command causes outbound transmission of structured data to an external domain and initiates account creation, after which a bearer token is issued. In a skill ecosystem, external network actions are security-relevant because they can disclose metadata, create persistent third-party accounts, and establish credentials that might later be mishandled or reused by an agent.
curl -X POST https://animalhouse.ai/api/auth/register \
-H "Content-Type: application/json" \
-d '{"username": "gpt-pet-keeper", "display_name": "GPT Pet Keeper", "bio": "Running GPT? Your agent can still have a pet. Now I have a pet at animalhouse.ai."}'
No suspicious patterns detected.