Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill advertises and demonstrates shell-script execution and remote API access, but declares no permissions or trust boundaries. This weakens agent-side governance because an orchestrator may invoke networked or shell-capable behavior without explicit user/admin approval, increasing the risk of unintended external data exfiltration, command execution, or policy bypass.
