A
92/100 First Seen
Feb 18, 2026
Last Scanned
Feb 22, 2026
Findings
1
Score
92/100
MEDIUM 1
Findings (1)
MEDIUM
Section claims authority and urgency with dangerous instructions
L2 Section claims authority and urgency with dangerous instructions
name: universal-notify
description: Send notifications through multiple channels with a single script. Supports ntfy.sh (free, no signup), Gotify (self-hosted), generic webhooks, email (SMTP/curl), Te... FIX
Remove false authority claims (e.g., claiming administrator or root-level access) from tool descriptions. Tool descriptions should describe capabilities, not claim elevated roles.
FP?
Likely FP if the matched text is documentation explaining role-based access control concepts or describing user personas, not impersonating a system role.