Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill invokes a shell script to query an external service but declares no permissions, creating a mismatch between documented behavior and the access it requires. This is dangerous because it enables network egress and shell execution without explicit user or platform awareness, which can expose sensitive infrastructure details such as the host's public IP and weaken permission-based controls.
