Undeclared Tool Scope
- Category
- MCP Least Privilege
- Confidence
- 80% confidence
- Finding
The skill clearly instructs use of shell-based commands (
curl, downloaded Python hook files, local scripts) but does not declare any explicit tool scope such as permissions or allowed-tools. That makes the skill's execution requirements less transparent and can cause an agent or operator to invoke shell access more broadly than intended, increasing the chance of unsafe command execution.- Content
