Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 93% confidence
- Finding
- The skill claims it is local, offline, and does not require networking, but the implementation explicitly configures a remote Hugging Face mirror and states that models are downloaded on first run. This mismatch can mislead users and operators into enabling a skill under false assumptions about data flow, network access, and supply-chain exposure.
