Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill clearly directs the agent to use shell commands, read and write local files, access environment variables, and fetch market data over the network, yet no permissions are explicitly declared. That mismatch increases the chance of overbroad execution in hosts that rely on declared permissions for review or policy enforcement, and it obscures the real trust boundary of the skill.
