Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill clearly instructs users to perform network access and write files locally, but the metadata does not declare permissions or prominently warn about those capabilities. This can mislead users and policy systems about the skill's operational scope, reducing informed consent and weakening guardrails around filesystem and network actions.
