Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill declares required binaries and environment variables and its documented commands invoke shell scripts that can read local files, use environment secrets, and make outbound network requests, but it does not declare explicit permissions for those capabilities. This creates a transparency and policy-enforcement gap: users or platforms may not realize the skill can access file contents and transmit them to a third-party API, especially for the `test` command that sends file content for remote analysis.
