Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation instructs users to export environment variables and run shell commands, indicating shell capability, but no corresponding permissions are declared. Undeclared execution capability weakens the trust model because users and platforms cannot accurately assess what the skill may do during setup or runtime, especially for a security-sensitive proxy skill that handles credentials and traffic routing.
