Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill explicitly instructs use of shell execution (`python3 scripts/huawei-cloud.py`), environment-based credentials, and generated JSON input files, which means it has operational capabilities to access secrets and perform cloud mutations. Because these capabilities are present but no declared permissions are provided, the host system cannot enforce least-privilege or clearly signal the risk boundary, increasing the chance of unintended command execution, credential exposure, or unauthorized alarm-rule changes.
