Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill invokes shell commands and a bundled helper script but does not declare any tool restrictions or allowed-tools scope. That increases the chance an agent can execute shell actions implicitly, making the skill's operational boundary unclear and raising the risk of unintended command execution or secret exposure during use.
