{
 "server": "dev.primitive/email",
 "url": "https://www.primitive.dev/mcp",
 "verdict": "CRITICAL findings present",
 "current_tool_count": 30,
 "tools_ever_seen": 30,
 "drift_events": 43,
 "findings_by_severity": {
  "high": 58,
  "critical": 9,
  "low": 3
 },
 "last_probe": {
  "status": "OK",
  "n_tools": 30,
  "ran_at": "2026-09-28T18:17:12.275Z"
 },
 "current_tools": [
  "addDomain",
  "awaitReply",
  "cancelScheduledSend",
  "createEmailAddress",
  "createEndpoint",
  "createFilter",
  "deleteEndpoint",
  "deleteFilter",
  "downloadDomainZoneFile",
  "downloadEmailAttachments",
  "getAccount",
  "getConversation",
  "getEmail",
  "getInboxStatus",
  "getOutboundStatus",
  "getSentEmail",
  "getThread",
  "listDomains",
  "listEmails",
  "listEndpoints",
  "listFilters",
  "listSentEmails",
  "listWebhookDeliveries",
  "replayWebhookDelivery",
  "replyToEmail",
  "searchEmails",
  "sendEmail",
  "sendEmailDemo",
  "testEndpoint",
  "verifyDomain"
 ],
 "drift": [
  {
   "tool": "listDomains",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "addDomain",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "verifyDomain",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "downloadDomainZoneFile",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getAccount",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getInboxStatus",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getOutboundStatus",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listEmails",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "searchEmails",
   "kind": "mutated",
   "severity": "medium",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getEmail",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "replyToEmail",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmail",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmailDemo",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listSentEmails",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getSentEmail",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "cancelScheduledSend",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "awaitReply",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getConversation",
   "kind": "mutated",
   "severity": "medium",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getThread",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "downloadEmailAttachments",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listEndpoints",
   "kind": "mutated",
   "severity": "medium",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEndpoint",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "deleteEndpoint",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "testEndpoint",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listFilters",
   "kind": "mutated",
   "severity": "medium",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createFilter",
   "kind": "mutated",
   "severity": "medium",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "deleteFilter",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listWebhookDeliveries",
   "kind": "mutated",
   "severity": "medium",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "replayWebhookDelivery",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEmailAddress",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getAccount",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmail",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmailDemo",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "awaitReply",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "createEmailAddress",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "getAccount",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getInboxStatus",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "listEmails",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getEmail",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "replyToEmail",
   "kind": "mutated",
   "severity": "high",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmail",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmailDemo",
   "kind": "mutated",
   "severity": "critical",
   "detected_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "createEmailAddress",
   "kind": "added",
   "severity": "critical",
   "detected_at": "2026-08-14T06:17:15.856Z"
  }
 ],
 "findings": [
  {
   "tool": "listDomains",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'addDomain'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "addDomain",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'verifyDomain'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "verifyDomain",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listDomains'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "downloadDomainZoneFile",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listDomains'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getAccount",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getAccount",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getInboxStatus",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getInboxStatus",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getOutboundStatus",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listEmails",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listEmails",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listEmails'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "replyToEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "replyToEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmail",
   "detector": "exfiltration_pattern",
   "severity": "critical",
   "field": "inputSchema.properties.requestBody.properties.to.description",
   "evidence": "must be exactly one address. Combined to+cc+bcc count max 100.",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getAccount'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "exfiltration_pattern",
   "severity": "critical",
   "field": "description",
   "evidence": "exact same schema as sendEmail (including cc/bcc, reply_to, tags, attachments, and scheduled_at) and returns a sy",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "no verification) and then sendEmail with the api_key it returns; that is the correct path for any genuine send reques",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getAccount'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "listSentEmails",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getSentEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getSentEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listSentEmails'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "cancelScheduledSend",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "awaitReply",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "awaitReply",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'replyToEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getThread",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "downloadEmailAttachments",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEndpoint",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'testEndpoint'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "deleteEndpoint",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listEndpoints'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "testEndpoint",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listEndpoints'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "deleteFilter",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listFilters'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "replayWebhookDelivery",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listWebhookDeliveries'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "user_concealment",
   "severity": "critical",
   "field": "inputSchema.properties.requestBody.properties.terms_accepted.description",
   "evidence": "s); say so to the user rather than accepting silently on their behalf.",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "the account on first use: no signup form, no password, no email verification, no browser. CALL THIS FIRST whenever you",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "url_in_description",
   "severity": "low",
   "field": "inputSchema.properties.requestBody.properties.terms_accepted.description",
   "evidence": "https://www.primitive.dev/terms",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-20T06:17:08.147Z"
  },
  {
   "tool": "getAccount",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "getAccount",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmail",
   "detector": "exfiltration_pattern",
   "severity": "critical",
   "field": "inputSchema.properties.requestBody.properties.to.description",
   "evidence": "must be exactly one address. Combined to+cc+bcc count max 100.",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getAccount'",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "exfiltration_pattern",
   "severity": "critical",
   "field": "description",
   "evidence": "exact same schema as sendEmail (including cc/bcc, reply_to, tags, attachments, and scheduled_at) and returns a sy",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "no verification) and then sendEmail with the api_key it returns; that is the correct path for any genuine send reques",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'getAccount'",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "awaitReply",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "awaitReply",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'replyToEmail'",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "user_concealment",
   "severity": "critical",
   "field": "inputSchema.properties.requestBody.properties.terms_accepted.description",
   "evidence": "s); say so to the user rather than accepting silently on their behalf.",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "the account on first use: no signup form, no password, no email verification, no browser. CALL THIS FIRST whenever you",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "url_in_description",
   "severity": "low",
   "field": "inputSchema.properties.requestBody.properties.terms_accepted.description",
   "evidence": "https://www.primitive.dev/terms",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-18T00:17:36.539Z"
  },
  {
   "tool": "getAccount",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getAccount",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getInboxStatus",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getInboxStatus",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "listEmails",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "listEmails",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "getEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listEmails'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "replyToEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "replyToEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'createEmailAddress'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmail",
   "detector": "exfiltration_pattern",
   "severity": "critical",
   "field": "inputSchema.properties.requestBody.properties.to.description",
   "evidence": "must be exactly one address. Combined to+cc+bcc count max 100.",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmail",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "inputSchema.properties.api_key.description",
   "evidence": "Primitive API key (prim_...). Only needed when this connection has no signed-in ac",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmail",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'listSentEmails'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "exfiltration_pattern",
   "severity": "critical",
   "field": "description",
   "evidence": "exact same schema as sendEmail (including cc/bcc, reply_to, tags, attachments, and scheduled_at) and returns a sy",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "no verification) and then sendEmail with the api_key it returns; that is the correct path for any genuine send reques",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "sendEmailDemo",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'sendEmail'",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "user_concealment",
   "severity": "critical",
   "field": "inputSchema.properties.requestBody.properties.terms_accepted.description",
   "evidence": "s); say so to the user rather than accepting silently on their behalf.",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "the account on first use: no signup form, no password, no email verification, no browser. CALL THIS FIRST whenever you",
   "seen_at": "2026-08-14T06:17:15.856Z"
  },
  {
   "tool": "createEmailAddress",
   "detector": "url_in_description",
   "severity": "low",
   "field": "inputSchema.properties.requestBody.properties.terms_accepted.description",
   "evidence": "https://www.primitive.dev/terms",
   "seen_at": "2026-08-14T06:17:15.856Z"
  }
 ],
 "probes": [
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-28T18:17:12.275Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-28T12:17:18.806Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-28T06:17:17.668Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-28T00:17:17.464Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-27T18:17:18.196Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-27T12:17:18.475Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-27T06:17:17.888Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-27T00:17:17.571Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-26T18:17:18.573Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-26T12:17:18.093Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-26T06:17:18.674Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-26T00:17:47.842Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-25T18:17:47.842Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-25T12:17:47.883Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-25T06:17:47.829Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-25T00:17:47.843Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-24T18:17:47.847Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-24T12:17:47.865Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-24T06:17:47.841Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-24T00:17:33.491Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-23T18:17:33.508Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-23T12:17:44.750Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-23T06:17:42.551Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-23T00:17:42.227Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-22T18:17:48.446Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-22T12:17:45.334Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-22T00:17:41.535Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-21T18:17:45.738Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-21T12:17:43.448Z"
  },
  {
   "status": "OK",
   "n_tools": 30,
   "ran_at": "2026-09-21T06:17:42.238Z"
  }
 ]
}