Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill declares broad capabilities in practice—environment access, local file read/write, shell execution, and network access—without an explicit permissions declaration or consent framing. That mismatch reduces transparency and weakens review boundaries, making it easier for a user or platform to underestimate that the skill can read local vault data, modify files, and transmit content to a remote service.
