Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises and demonstrates capabilities that imply shell execution, filesystem access, and environment interaction, but it does not declare any permissions or constraints. This creates a trust and policy gap: downstream systems or users may approve the skill without understanding that it can run tooling against local code, read project files, write reports, and potentially access sensitive environment data.
