Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs the agent to read and write workspace files (`expenses/*.md`) but does not declare corresponding permissions. This creates a transparency and policy gap: the skill can persist user financial data without an explicit permission contract, increasing the risk of unexpected data modification or storage.
