Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 95% confidence
- Finding
- The skill markets itself as a governance and kill-switch layer, but the documented behavior is only a best-effort remote check to an external service and not local enforcement. If the API key is absent or the check is skipped or fails open in implementations derived from this guidance, destructive actions may still proceed while operators falsely believe governance controls are active, creating a dangerous security assurance gap.
