Tp4
- Category
- MCP Tool Poisoning
- Confidence
- 99% confidence
- Finding
This finding describes broad filesystem operations, local credential-like file reads, persistent identity creation, outbound HTTP auth flows, token handling, and retries—far beyond the stated purpose of plant-stage recognition. In this skill context, the mismatch is especially dangerous because benign agricultural branding may cause users to authorize sensitive local and network access they would not otherwise permit.
- Content
