Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill explicitly describes local file storage under `~/.openclaw/workspace/memory/tax/` and multiple scripts that read and write JSON and summary files, yet no permissions are declared. That creates a permission-model mismatch: a user or platform may assume the skill is inert from a permissions standpoint while it can persist and access sensitive tax records locally, increasing privacy and integrity risk.
