Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill invokes Python and browser automation, which implies shell execution and network access, but it does not declare those permissions. Hidden capabilities reduce auditability and can cause an agent runtime to grant or use broader privileges than reviewers expect, increasing the risk of unintended external access or command execution.
