Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill invokes shell scripts (`donate.sh` and `register.sh`) but does not explicitly declare corresponding permissions or execution capabilities. This creates a transparency and governance gap: reviewers and users cannot accurately assess what code will run or what external actions may occur, especially since one path submits a user's phone number to an external API.
