Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill references executable shell usage via `scripts/crawlora.sh` examples but does not declare any `permissions` or `allowed-tools` scope. This creates an authorization gap where an agent may invoke shell capabilities implicitly, making it harder to constrain execution and increasing the chance of unintended command execution or misuse of local environment access.
