Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs use of shell execution (`curl` and `bash scripts/search.sh`) but does not declare any corresponding permissions. Undeclared execution capability is risky because it can bypass user and platform expectations about what the skill is allowed to run, especially when combined with external network access and user-controlled input.
