Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill instructs the agent to read and write local files and invoke scripts that likely perform network-enabled SEO operations, but it does not declare any permissions or capability boundaries. This creates a mismatch between documented behavior and the platform's trust model, increasing the risk of over-privileged execution, unintended data access, or silent outbound activity if the skill is run in an environment that relies on explicit permission declarations.
