Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 91% confidence
- Finding
- The skill promises a tightly controlled self-evolution mechanism, but the documented behavior is inconsistent and overclaims capabilities such as persistent personalization, Darwin scoring, and retrospective handling that are not actually substantiated here. This is dangerous because users and downstream agents may trust the skill to safely gate self-modification when the controls are incomplete, creating a false sense of safety around persistent memory and governance-file changes.
