Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 99% confidence
- Finding
- The declared description says this skill should be used when a user asks what a programming error or stack trace means and how to fix it. However, the supplied code chunk contains only automated tests for a skill package/repository. Its behavior is unrelated to debugging user-provided errors: it reads SKILL.md, README.md, CONTRIBUTING.md, scans local files for secrets, checks formatting and metadata conventions, and validates repository structure. This is a materially different primary purpose and includes undeclared capabilities involving filesystem inspection and compliance/testing of skill assets. Therefore, the description does not accurately represent the code.
