Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to read local files under absolute paths and perform outbound network fetches, but it does not declare any permissions or trust boundaries. This can cause the agent or platform to execute capabilities the user did not explicitly approve, especially since the skill is designed to fetch arbitrary URLs and reference local workspace files.
