Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill exposes shell execution paths (`bash scripts/...`, `tail`, `cat`) but does not declare any permissions or capability boundaries. That mismatch can cause the agent or reviewer to underestimate what the skill can do, increasing the chance of unintended command execution or unsafe deployment in environments that rely on declared permissions for trust decisions.
