Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 92% confidence
- Finding
- The skill is presented as desktop automation for mouse, keyboard, and screen control, but the documentation also exposes broader capabilities including window enumeration/activation, clipboard access, key monitoring, screenshot capture, and an optional autonomous AI agent. This scope expansion matters because these features enable data collection, application targeting, and autonomous action beyond what a caller may reasonably expect from the description, increasing the risk of stealthy misuse and over-privileged invocation.
