Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill advertises and demonstrates shell-based commands plus file read/write behavior, but does not declare permissions. This creates a trust and review gap: users or orchestration systems may grant the skill broader access than expected, increasing the chance of unintended file access, environment exposure, or command execution in a coding assistant context.
