Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill invokes a shell command (`cd ... && python3 scripts/fetch_boss.py`) but does not declare any permissions, which creates a transparency and policy-enforcement gap. Even if the current command appears simple, undeclared execution capability makes it harder for the platform and users to assess what the skill can do and increases risk if the script is later modified to perform broader actions.
