Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill advertises executable Python code with file read/write and network behavior but does not declare permissions or equivalent capability boundaries. This is dangerous because a caller or platform may treat the skill as lower risk than it is, leading to unintended data access, outbound requests, or file creation without informed approval or sandboxing.
