Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill instructs the agent to execute shell scripts and curl commands, but the metadata does not declare corresponding permissions. This can bypass a caller's expectations and security controls, especially because the skill also handles authentication tokens and file uploads, increasing the risk of unintended command execution or data exposure.
