Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill instructs the agent to read internal reference files and invoke multiple local scripts that make external queries, but it declares no permissions. This creates a mismatch between documented behavior and the security model, increasing the risk of undeclared file access, shell execution, and network use occurring without explicit review or sandboxing expectations.
