Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security audit
Security checks across malware telemetry and agentic risk
This local notification-triage skill is not malicious, but it needs review because implementation bugs and under-disclosed persistence could cause notifications to be suppressed, marked seen, or exposed differently than users expect.
Review this skill before installing if you rely on notifications for security, billing, legal, outages, or deadlines. It stores notification excerpts locally, can silently drop items classified as ignore, and has implementation mismatches that may classify or process notifications differently from the documentation.
1. **Source-specific rules first** — If a rule exists for the source, use it immediately 2. **Keyword scoring** — Each urgent keyword +2, each batch keyword -1, time-sensitive +1 3. **Thresholds** — Score ≥ 3 = urgent, Score ≥ 1 = batch, else ignore 4. **Auto-rule creation** — First classification for a source saves its level as a persistent rule ---
64/64 vendors flagged this skill as clean.
No suspicious patterns detected.