Tp4
- Category
- MCP Tool Poisoning
- Confidence
- 99% confidence
- Finding
The documented behavior strongly claims Xiaohongshu scraping, analysis, and download capabilities, while the static finding says the actual implementation does not perform those functions and is only generic CLI parsing. This mismatch is dangerous because users or orchestrators may grant tokens, trust outputs, or make business decisions based on a capability that is not actually implemented, creating supply-chain trust and deceptive-functionality risk.
- Content
