Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill explicitly states it shells out to external binaries (`curl`, `jq`) and requires an API key, but there is no declared permission model warning or equivalent safety disclosure in the skill file. This creates a transparency and control gap: users or hosting agents may allow execution without understanding that shell execution and outbound network access are required.
