Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises shell capability indirectly via its documented use of curl, but it does not declare any explicit tool scope such as allowed-tools or permissions. In an agent environment, undeclared shell access weakens least-privilege controls and can allow broader command execution than reviewers or runtime policy expect, especially when user-derived input may later be interpolated into shell commands.
