Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill explicitly instructs the user to run shell scripts and install/start a local service, but it declares no permissions despite requiring shell-capable operations. This creates a trust and review gap: an agent or reviewer may underestimate the skill's ability to execute system commands, install dependencies, and modify local state.
