Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to use local shell scripts (`scripts/research-demand.sh`, `scripts/find-competitors.sh`, `scripts/search-trend.sh`) but does not declare the corresponding permissions. Undeclared code-execution capability creates a trust and review gap: the runtime may execute scripts users and reviewers did not explicitly authorize, and those scripts could perform unintended local actions or network access depending on implementation.
