Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 82% confidence
- Finding
- The skill clearly instructs users to run shell commands and wrapper scripts, yet no permissions are declared to reflect that capability. This creates a trust and review gap: consumers may assume the skill is documentation-only or low-risk when it actually drives package installs and command execution on the host.
