Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill exposes significant capabilities including environment access, filesystem access, shell execution, and network use, but does not declare permissions or warn users about that scope. This weakens transparency and reviewability, making it easier for a user or platform to invoke a broadly capable skill without understanding the trust boundary.
