Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill documentation instructs users to execute local shell scripts and curl commands, but the skill declares no permissions to reflect that shell capability. This mismatch can weaken user trust boundaries and allow a skill to invoke command execution paths without transparent permission signaling, especially in agent environments that rely on declared permissions for policy enforcement.
