Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 95% confidence
- Finding
- The skill is presented primarily as a tweet/content drafting tool, but it also persistently logs all user inputs, keeps a global history, and supports bulk export and search over stored content. That expands the data-handling surface significantly beyond the declared purpose, creating a meaningful risk that sensitive prompts, drafts, campaign plans, or confidential text are retained and later exposed without the user fully appreciating that behavior.
