Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 83% confidence
- Finding
- The skill markets itself as a simple read-only natural-language log search tool, but its documented behavior includes broader discovery and live-tail capabilities and admits the agent must perform query translation itself. That mismatch can mislead users and orchestrators about what will actually run, increasing the chance of overbroad log access, unintended backend enumeration, and exposure of sensitive log data during use.
