Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill declares no permissions, but its documented and referenced functionality clearly requires reading input files and writing sanitized output files. This creates a mismatch between declared capabilities and actual behavior, which can undermine agent sandboxing, policy enforcement, and user trust because file access may occur without explicit permission disclosure.
