Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill advertises and instructs use of local CLI tooling that reads and writes files, but no explicit permission model or user-facing disclosure is declared. In an agent environment, hidden file access expands the trust boundary and can lead to unintended reads of local data or persistent modification of profile/state files without informed consent.
