Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill advertises capabilities that imply file reading and shell command execution, but it does not declare permissions or boundaries for those actions. In an agent environment, undocumented execution and file access increase the risk of unintended command execution, data exposure, and misuse by downstream callers who assume the skill is metadata-only or low-privilege.
