Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill documentation describes capabilities to access environment variables, read/write files, invoke shell commands, and make network calls, yet no explicit permissions are declared. This weakens trust boundaries and informed consent because a caller may trigger infrastructure-changing operations without a clear permission model. In a cloud deployment skill, hidden capability breadth is especially risky because it can affect both local execution context and remote cloud resources.
