Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill declares local file storage and exposes multiple scripts that read and write user trip and preference data, but it does not declare corresponding permissions. That mismatch can hide the skill's real capabilities from the platform or user review process, reducing transparency and making unintended data access harder to govern.
