Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs use of shell, network access, environment variables, and local file reads/writes but does not declare any permissions. This creates a trust and review gap: an agent or operator may approve the skill without understanding it can access secrets, read local files, and make outbound requests to external services.
