Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill explicitly instructs use of an exec-capable helper script and shell commands, but the metadata does not declare corresponding permissions or capabilities. This creates a transparency and policy-enforcement gap: users or orchestration systems may not realize the skill can execute shell commands and initiate outbound network activity.
