Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill clearly instructs the agent to use shell commands and make networked API calls, but it does not declare corresponding permissions or provide an explicit trust boundary. In an agent ecosystem, undeclared capabilities reduce transparency and can cause the skill to be invoked in contexts where users or policy engines do not expect physical-device control or outbound communication.
