Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 91% confidence
- Finding
- The static finding indicates the underlying runner supports generic remote MCP tool invocation across platforms, while this skill is presented as Pinterest-specific. That mismatch is dangerous because users and downstream agents may grant trust, credentials, or execution latitude based on the narrower stated scope, while the actual implementation could enumerate schemas and invoke unrelated remote tools.
