Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill documentation describes use of environment variables (`SKILLS_DIR` and `OUTPUT_DIR`) and external CLI-based execution, but no corresponding permissions are declared. That creates a capability/permission mismatch: the skill may access environment-derived paths or configuration in ways users and tooling cannot transparently review, increasing the risk of unintended file access or data flow.
