Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill documentation declares operational requirements and usage that imply environment access, local file read/write, network access, and shell execution, but it does not explicitly declare corresponding permissions. This can undermine sandboxing and user consent because the agent may perform sensitive actions beyond what the manifest transparently communicates.
