Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill clearly instructs the agent to execute shell scripts and destructive uninstall commands, but no declared permissions are present. This creates a transparency and policy-enforcement gap: the platform and user may not realize the skill needs host shell access until dangerous operations are already suggested or attempted.
