Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises and demonstrates shell execution via curl and a helper script, but it does not declare corresponding permissions. That mismatch weakens platform trust boundaries because users or orchestrators may not realize the skill can invoke shell commands and send data externally.
