Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill explicitly instructs use of shell tooling (`curl`) and a submission script, but no declared permissions are present to make that capability transparent to the user or enforcement layer. This creates a real security gap because the skill can initiate networked shell actions with an API key, increasing the risk of unintended command execution or unreviewed outbound requests.
