Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill invokes a shell script to send Telegram stickers, but the manifest declares no explicit permissions for shell or outbound actions. Hidden execution capability is risky because it obscures what the skill can do and prevents meaningful user or platform consent for sending messages into external chats.
