Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill describes code-capable behaviors including persistent storage, external syncing, and deployment-related operations, but does not declare permissions. That creates a dangerous transparency and consent gap: operators may enable a skill that can read/write files, use network access, or invoke shell-like automation without explicit review or sandboxing expectations.
