Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill clearly exposes shell-capable operations such as `npm install`, bash scripts, Node execution, Python/Demucs commands, ffmpeg, and background exec, yet no explicit permissions model is declared. That mismatch can cause the hosting platform or user to underestimate the skill's ability to execute commands, access files, and reach the network, increasing the chance of unsafe deployment or misuse.
