Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 78% confidence
- Finding
- The skill documentation exposes shell-style executable usage (`world_timezone.py ...`) while the skill declares no permissions, creating a capability/permission mismatch. Even if the underlying function is benign, undeclared execution capability weakens trust boundaries and can lead to unreviewed command execution paths or misleading deployment assumptions.
