Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 96% confidence
- Finding
- The skill declares no explicit permissions even though its documented behavior requires environment access, file read/write, and shell execution. This weakens security review and user consent because a caller may not realize the skill can execute local commands, access API keys, and write files, increasing the chance of misuse or unsafe deployment.
