Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill invokes shell/Python execution against the local environment but does not declare any explicit tool scope or allowed-tools boundary. That makes the skill under-specified from a security perspective and increases the chance an agent executes filesystem-affecting commands without clear least-privilege constraints or review expectations.
