Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill advertises or implies capabilities that would require file read, file write, and shell access through the referenced scripts, but it does not declare an explicit tool scope such as permissions or allowed-tools. This creates an authorization and review gap: operators and policy systems cannot clearly constrain what the skill may access, increasing the risk of over-privileged execution or unintended access to host files and commands.
