Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill explicitly instructs the agent to read local reference files, invoke Python scripts, and rely on networked backend services, yet no declared permissions are present. This creates a governance gap: the platform and reviewer cannot accurately constrain or audit what the skill is allowed to access, increasing the risk of unintended file access, command execution, or outbound requests if the skill is misrouted or modified.
