Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill invokes shell commands, reads configuration files, writes local files, accesses environment paths, and calls remote APIs, yet it declares no permissions. This under-specification prevents proper policy enforcement and informed user consent, and is especially risky here because the workflow includes local file handling and network access tied to user identifiers and history retrieval.
