Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 94% confidence
- Finding
- The skill is presented as an AGV route planner, but the documented commands describe a generic local datastore that can add, search, remove, export, and reconfigure arbitrary entries. This mismatch is dangerous because it can cause an agent or user to invoke broader file and data-management behaviors than expected, increasing the chance of unintended data access, deletion, or export under an industrial-looking label.
