Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises and instructs use of shell commands, host file access, device file writes, and network downloads, but does not declare an explicit permission model. That mismatch increases the chance the agent will invoke powerful local capabilities without clear policy gating or user awareness, especially because the skill can flash firmware, write device boot files, and connect over WiFi.
