Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill exposes shell-based commands in SKILL.md but does not declare any permissions, which undermines informed consent and security review. Even if the benchmark behavior is expected, shell execution can access local files, invoke network operations, and affect system state, so omitting permissions increases the risk of unsafe deployment or misuse.
