Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill documentation indicates capabilities to read environment variables, access local files, write visualization outputs, make network requests to remote URLs/APIs, and invoke shell commands, but it does not declare permissions explicitly. This creates a real security gap because operators and policy engines cannot accurately assess or constrain what the skill can do, increasing the chance of over-privileged execution and unsafe handling of user-supplied files/URLs.
