Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 88% confidence
- Finding
- The skill's documented behavior does not fully match its actual capabilities and examples, which weakens trust boundaries and can cause users or agent frameworks to authorize the skill under incomplete assumptions. In security-sensitive agent ecosystems, inaccurate claims about optional dependencies, audit coverage, and scope can lead to overtrust, unsafe invocation, or missed compliance gaps.
