Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill declares local file write capability in its documented behavior (`--output`, generated image/CSV files) but does not declare any corresponding permissions. This creates a security governance gap: reviewers, runners, or policy engines may underestimate what the skill can modify, and if path handling is weak, the write surface could extend beyond intended workspace files.
