Undeclared Tool Scope
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
The skill declares executable capabilities via Python/shell usage and implicitly relies on file access, but it does not define an explicit tool permission scope. That creates an authorization gap where an agent runtime may grant broader shell or file-read access than the task actually requires, increasing the chance of unintended data exposure or command misuse when processing sensitive tax records.
- Content
