Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises operational capabilities that include reading files, writing artifacts, and invoking shell commands, but the metadata shown in the skill header does not declare any permissions or capability boundaries. That creates a transparency and governance gap: users or hosting platforms may authorize and execute the skill without understanding that it can access local files and run commands, which increases the risk of unintended data exposure or unsafe command execution in downstream implementations.
