Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill declares only a binary requirement (`python3`) but the content and static analysis indicate capabilities related to environment access, file writing, and network activity without corresponding permission disclosure. This is dangerous because users and policy engines may assume the skill is low-privilege while it can read local inputs, write generated datasets, and potentially send data externally, creating a transparency and consent gap.
