The Claws in Plain Sight: Unauthorized Context Disclosure through LLM Agent Tool Calls
LLM agents routinely construct tool-call arguments from user profiles, conversation history, retrieved documents, and prior tool results. However, legitimate access to contextual information does not imply authorization to transmit that information for every purpose or destination. We present Claw in Plain Sight, an au...