Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill invokes shell commands for git clone/cp/commit/push but declares no corresponding permissions or capability boundaries. Hidden code execution capability increases risk because users and policy layers cannot accurately assess that the skill will modify local files and perform repository operations.
