Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 84% confidence
- Finding
- The skill claims a narrow YouTube-channel-analysis purpose, but the described runner behavior can enumerate tools, inspect schemas, target multiple platforms, cache arbitrary responses locally, and potentially invoke broader functionality than the description suggests. That mismatch weakens user consent and increases the chance that operators expose data to unintended APIs or invoke capabilities outside the expected scope.
