Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill clearly instructs the agent to use shell commands (`screencapture`, `cp`, `grep`, `sed`, `curl`) but does not declare permissions accordingly. That creates a security transparency gap: reviewers and enforcement systems may not realize the skill can capture the screen, read local config, and exfiltrate data over the network.
