Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 97% confidence
- Finding
- The skill executes extensive shell operations including downloading binaries, killing processes, editing persistence mechanisms, and invoking privileged commands, yet it declares no corresponding permissions. This creates a transparency and consent gap: users or orchestrators may invoke a highly privileged installer without understanding its real capabilities.
