Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill contains multiple shell commands and system-level deployment steps but does not declare permissions or capabilities accordingly. This creates a trust and execution-boundary problem: consumers may treat the skill as low-risk documentation while it actually instructs privileged system changes, package installation, firewall modification, and service persistence.
