Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security checks across malware telemetry and agentic risk
This is a straightforward local CI test-report analyzer that reads JUnit XML files and prints flaky-test summaries without hidden network, credential, persistence, or destructive behavior.
Install if you are comfortable letting it read the JUnit XML files matched by JUNIT_GLOB. Keep that pattern narrow, such as a CI test-results directory, especially in repositories containing private logs or artifacts.
65/65 vendors flagged this skill as clean.