Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill documentation exposes write-like capability via a local persistence path (`~/.openclaw/equipment_log.json`) without declaring corresponding permissions. Undeclared file-write behavior weakens transparency and trust boundaries, because a user or platform may approve the skill under the assumption it is read-only or low-impact when it can actually modify local state.
