Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 89% confidence
- Finding
- The documented behavior includes persisting the Amap Web Service Key to a local config.json file, while the high-level description does not clearly disclose secret storage behavior. Storing API keys locally without explicit disclosure and secure handling guidance can expose credentials to other local users, backups, logs, or accidental source-control commits; the additional capability mismatches also undermine user trust about what the skill really does.
