Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 91% confidence
- Finding
- The skill’s stated purpose is self-improvement logging, but the file also directs hook installation, cross-session tooling use, output inspection, and skill scaffolding. This mismatch can cause operators to grant broader trust than warranted and may enable unexpected file writes or automation in environments where the skill was only approved for note-taking.
