Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill invokes a network-capable CLI but does not declare any explicit tool scope such as allowed tools or permissions. That creates an authorization gap where an agent may execute external network actions without clear policy boundaries, increasing the chance of unintended data exfiltration or unsafe API use.
