Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 79% confidence
- Finding
- The skill explicitly states it will read a local config file (`~/.zlbx/config.json`) and write reports to a local directory (`~/zlbx-company-intel-files/`), yet the metadata declares only environment-variable requirements and no corresponding file permissions. This creates a least-privilege and transparency gap: a host may allow the skill to access local files without the user or policy engine clearly seeing that capability, increasing the risk of unintended local data exposure or unauthorized file writes.
