Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill declares no meaningful permissions while its documented workflow clearly involves shell execution, local file reads/writes, network pushes to GitHub/Gitee, and likely environment access for credentials. This mismatch weakens user consent and policy enforcement because a caller may invoke a high-impact publishing skill believing it is low-privilege.
