Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill clearly instructs the agent to read remote files and execute shell commands over SSH, yet it declares no explicit permissions. This creates a policy/visibility gap: a caller or enforcement layer may underestimate the skill's capabilities, leading to unintended remote command execution or data access if the skill is invoked in a broader workflow.
