Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs users to run a shell script and supply an API key, but it does not declare any explicit tool scope such as allowed shell usage or constrained permissions. That mismatch weakens policy enforcement and increases the risk that a consuming agent may execute shell commands with broader capabilities than intended, especially if later edits add unsafe command construction or external inputs.
