Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill exercises sensitive capabilities including shell, network, file read/write, and environment access, but does not declare an explicit permissions model. That mismatch increases the chance that an agent or user invokes the skill without understanding its actual reach, especially since it can read credentials, write persistent state, and contact external services.
