Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documents local file read/write behavior via validation and evidence-generation steps, but it does not declare any explicit tool scope or permissions boundaries. This creates an authorization gap: an agent may use filesystem capabilities implicitly without clear user visibility or policy restriction, increasing the risk of unintended access or artifact persistence.
