Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill clearly invokes shell scripts (`bash scripts/text_to_speech.sh ...`) but does not declare corresponding permissions/capabilities in a way that informs users or enforcement systems. This creates a transparency and policy gap: consumers may assume the skill is passive documentation while it actually executes local shell commands and performs networked actions.
