Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs users to run a local script that reads and writes configuration files, consumes environment variables, and uses shell/systemd commands, yet the skill declares no permissions. That mismatch is a real security issue because it hides the skill's operational capabilities from reviewers and users, reducing informed consent and making it easier for a modified or future version to perform sensitive actions unexpectedly.
