Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill instructs the agent to execute local programs, run a web server, poll for completion, and read/write JSON and HTML files, yet no permissions are declared. That mismatch is dangerous because users and platform controls may not realize the skill can access local files, open network listeners, and invoke shell commands while processing sensitive interview content.
