Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs users to run local Python scripts and invoke curl against an external service, which clearly exercises shell and network capabilities while declaring no permissions. This mismatch is dangerous because agents or users may execute networked actions and handle sensitive key material without an explicit trust boundary or consent model.
