Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill describes and encourages capabilities including local file read/write, network access, and shell execution, but it does not declare permissions explicitly. That creates a security transparency gap: a user or orchestrator may invoke the skill without understanding that it can start local servers, write logs/PID files, run helper scripts, or make outbound requests. In this context the capabilities are functionally relevant rather than overtly malicious, but the lack of declaration increases the chance of unsafe deployment or over-trusting the skill.
