Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill invokes local Python scripts against user-supplied PDF paths and therefore clearly performs filesystem reads, yet it declares no required permissions. This creates a transparency and policy gap: the host or user may not understand that local file access is needed, increasing the risk of unintended access to sensitive documents.
