Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises executable workflows that write output files via commands like `python scripts/research_prompts.py --output report.md`, but it declares no `permissions` or `allowed-tools` scope. That mismatch can let an agent invoke file-writing behavior without an explicit least-privilege boundary, increasing the risk of unintended file creation or overwriting when the skill is auto-selected.
