Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill declares a shell capability via required binaries (`curl`) but does not declare corresponding permissions, creating a transparency and policy-enforcement gap. This can lead to network-capable execution without explicit approval, which is risky because the skill is designed to fetch remote content and write cached/output files.
