Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill documentation instructs users to execute a local shell script (`./scripts/travel-planner.sh`) and shell commands, but the skill metadata does not declare corresponding permissions/capabilities. This mismatch reduces transparency and can mislead users or tooling about what the skill requires, which is a real security concern even though the commands appear ordinary and travel-related rather than overtly malicious.
