Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill declares shell-dependent behavior (`curl` and a submission script) but the static analysis indicates no explicit permissions are declared for that capability. This creates a mismatch between documented execution behavior and the permission model, which can lead to unintended command execution paths being available without clear review or sandbox expectations.
