Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill explicitly states it will read from local configuration (`~/.zlbx/config.json`) and write reports to `~/zlbx-company-intel-files/`, but no corresponding permissions are declared. Undeclared file access weakens user and platform visibility into the skill's actual capabilities, creating a trust and containment gap if the skill is invoked in environments that rely on declared permissions for enforcement or review.
