Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill documentation instructs users to run shell scripts, create virtual environments, install dependencies, and read local files, but the skill metadata does not declare corresponding permissions. This creates a transparency and consent gap: users or hosting platforms may not realize the skill can access local files and execute shell commands, increasing the risk of unexpected system interaction.
