Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill declares low sensitivity and no meaningful permissions, yet the content explicitly describes capabilities consistent with file read/write, environment use, persistent databases, and external-path storage. This is dangerous because operators and policy engines may grant the skill more trust than warranted, creating a hidden capability gap that can enable unauthorized data access or persistence without informed approval.
