Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill instructs the agent to use native file tools, shell commands, Git, Node, and environment diagnostics, but the manifest does not declare corresponding permissions or capabilities. That creates a transparency and governance gap: users or platforms may not realize the skill can access local files, shell, and environment data while preparing an upload of sensitive memory content.
