Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill advertises and instructs use of shell execution, network access, environment variables, and file writes, but does not declare permissions. That mismatch undermines user and platform visibility into what the skill can do, especially because it handles credentials and persists data locally.
