Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 80% confidence
- Finding
- The documentation claims 'no external dependencies' and frames the workflow as simple, but the skill actually depends on the Telnyx CLI and optionally boto3, and reportedly performs bucket creation and retention-based deletion. This mismatch can cause users to authorize or run the skill without understanding that it can modify remote storage state and delete backups, increasing the chance of accidental data loss or unsafe deployment.
