Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 96% confidence
- Finding
- The skill advertises significant capabilities including file read/write, shell execution, and network-related installation requirements, but does not declare permissions accordingly. This creates a trust and review gap: operators may approve or run the skill without understanding that it can access arbitrary paths, modify local files, invoke shell-based install flows, and potentially reach external resources.
