Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill clearly describes capabilities to read local files, write Markdown/archive outputs, access environment-based credentials, and call a remote OCR API, yet it declares no permissions or equivalent user-facing capability disclosure. This is dangerous because users may invoke it without understanding that sensitive local documents and secrets will be accessed and that outputs will be persisted locally and transmitted off-system.
