Undeclared Tool Scope
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
The skill instructs users to run a Python script, read commit-message files, generate configuration files, and use shell commands, but the manifest does not declare any tool scope such as permissions or allowed-tools. This creates a transparency and governance gap: an agent or platform may expose file and shell capabilities without the user being explicitly informed through the skill metadata, increasing the risk of unintended file access or command execution.
- Content
