Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 88% confidence
- Finding
- The skill is advertised as a business analysis workflow, but it also performs environment/configuration actions such as creating config directories and storing Tavily-related settings. This mismatch matters because users may invoke it expecting analysis only, while the skill also changes local state and prepares external access, reducing transparency and informed consent.
