Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill advertises and enables sensitive capabilities including network access, shell execution, local file read/write, and environment variable use, yet declares no permissions or trust boundaries. This creates a real security issue because users and agents cannot accurately assess what the skill may access or modify, especially since it can generate automation commands and use API keys.
