Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill documentation indicates use of the `acp` command via subprocess and shell capability, but the manifest does not declare any explicit tool scope such as `permissions` or `allowed-tools`. This creates a governance gap: agents or platforms may execute shell-capable behavior without a clear, least-privilege declaration, increasing the risk of unintended command execution or overbroad tool access.
