Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill clearly instructs users to run commands that read arbitrary local files and write parsed output to user-specified directories, yet the skill metadata declares no permissions. This creates a transparency and consent problem: an agent or user may invoke file-capable functionality without an explicit permission declaration, increasing the risk of unintended access to sensitive PDFs or writes to unexpected locations.
