Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill declares no permissions, yet it instructs the user to install and run shell-based automation via cron and a bash script. That creates an execution capability and outbound network behavior that is not transparently declared, reducing informed consent and making review harder.
