Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill documentation indicates it reads and writes local data (`tracked.json`) and instructs users to run setup and scripts, yet no declared permissions are documented for those capabilities. Undeclared file access reduces transparency and informed consent, making it easier for users or host platforms to underestimate what the skill can modify or persist on disk.
