Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documents capabilities to read environment variables and local files, invoke shell commands, and make network requests, but it does not declare permissions or boundaries for those actions. In an agent environment, this weakens policy enforcement and informed consent, making it easier for a broadly triggered skill to access secrets or perform side-effecting operations unexpectedly.
