Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 87% confidence
- Finding
- The skill description and body materially disagree about what the skill does and how it does it, including undisclosed reads from `memory/evenrealities-orders.json`, use of Playwright instead of `fast-browser-use`, and inaccurate claims about Telegram delivery. Behavior mismatches reduce operator trust, can hide data flows from users, and make it easier for risky functionality to be overlooked during review or deployment.
