Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill invokes a shell script but does not declare any tool scope or allowed-tools, which weakens policy enforcement and makes the capability less transparent to reviewers and users. In an agent setting, undeclared shell access increases the risk of unintended command execution or privilege misuse, even if the documented purpose is simple and benign.
