Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill invokes a bundled Python client for uploads, remote tool calls, updates, and credential-related operations, which implies network, shell, and filesystem capabilities despite no declared permissions. This is dangerous because users and host systems cannot make an informed trust decision when powerful capabilities are hidden or undeclared, increasing the chance of unintended data access or command execution in a sensitive agent environment.
