Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 88% confidence
- Finding
- The skill presents itself as a general-purpose campaign utility, but the documented behavior includes persistent storage, export, search, and activity reporting that materially expand its data-handling scope. This can cause users or orchestrators to invoke it without realizing it retains and redistributes entered content, creating privacy and unintended data exposure risks.
