Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill invokes shell commands and instructs users to set and use an API token, but it does not declare an explicit tool scope such as allowed-tools or permissions. In an agent environment, undeclared shell capability weakens policy enforcement and can allow broader-than-expected command execution paths, especially when handling sensitive finance data and secrets.
