Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill clearly performs shell-based operations, including reading local files, sourcing helper scripts, and issuing authenticated API calls that can control a home alarm and door locks, yet it declares no permissions. That mismatch is dangerous because it hides the skill's real capabilities from any permission-gating or review process and increases the chance that high-risk actions execute without appropriate user awareness or platform enforcement.
