Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill describes behavior that uses shell, network, file reads, and environment access without any declared permission boundary, which creates hidden capability escalation for a browser-testing workflow. In this context, those capabilities can expose secrets from .env files, execute installer scripts, and make unintended outbound connections while the user believes they are only invoking a constrained e2e verification skill.
