Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill clearly documents operations that write new files or modify PDFs, such as edit, merge, split, and rotate, yet no permissions are declared. This creates a mismatch between advertised capabilities and governance controls, increasing the risk of unintended file modification or overwrite in an agent environment.
