Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security audit
Security checks for vulnerabilities and agentic risk
This is a local note-vault assistant with disclosed local writes, local model use, and explicit limits against publishing or pushing without user approval.
Install only if you are comfortable letting the agent read and write the configured local vault and create local git commits there. Keep secrets out of the vault, use local Ollama unless you explicitly approve a remote endpoint, and review the external LYGO stack tooling before running its installer or commands.
- Cloud-only Kimi/Claude as primary (optional fallback only) - Autonomous overnight `/dream` v1 (not shipped — build after ingest+index stable) - Auto `git push`, ClawHub publish, or kernel egg plant without consent ## Setup
No suspicious patterns detected.