Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill advertises executable behavior that invokes a local Python script and static analysis detected shell and file-write capabilities, but the manifest declares no explicit tool scope or permissions. In a trading context, hidden or undeclared execution capability increases the risk of unauthorized command execution, local file modification, and access to API-key-backed trading configuration without clear user or platform controls.
