Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 97% confidence
- Finding
- The skill explicitly instructs use of shell execution, network fetching, and local file writes, but does not declare corresponding permissions. This undermines permission transparency and can cause users or hosting systems to approve a skill without understanding that it will execute code, download remote content, create workspaces, and modify repositories.
