Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill clearly instructs the agent to read and write files and execute shell commands (`python3`, `manim`, `ffmpeg`, package installs), but it does not declare corresponding permissions. This creates a capability transparency problem: a user or platform may invoke the skill without understanding that it can modify the filesystem and run local commands, increasing the chance of unsafe or unexpected execution.
