Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill clearly describes reading Excel files from `/workspace/user_input_files/` and writing processed output to `/workspace/skills_output/`, which means it relies on file read/write capability while declaring no permissions. Even if the intended behavior is legitimate, undeclared capabilities weaken sandboxing and user transparency, and can become dangerous if file selection or path handling is broader than described.
