Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill documents extensive shell-based capabilities but does not declare permissions or clearly constrain when those commands may be used. In an agent ecosystem, hidden shell capability increases the risk that an assistant can execute sensitive mailbox-management operations without transparent consent or policy enforcement.
