Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill instructs users to run a Python converter that reads from local memory stores and writes a full export to disk, but it declares no permissions or equivalent warning metadata. This can mislead users and any hosting platform about the skill's actual access level, reducing informed consent and oversight for operations that touch potentially sensitive local knowledge stores.
