Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill invokes shell commands (`bash command`) to generate a screen-share URL and analyze captured frames, but the metadata does not declare corresponding permissions. This creates a capability/permission mismatch that can mislead users and host systems about what the skill can do, weakening trust boundaries and review controls.
