Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill invokes a shell script but does not declare corresponding permissions, creating a mismatch between documented trust boundaries and actual execution capabilities. This can mislead users or policy engines about what the skill is allowed to do, increasing the chance of unintended local command execution or insufficient review of shell-based behavior.
