Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to run local Python scripts, inspect the COMSOL environment, install packages, and read/write project and output files, which clearly exercises shell, environment, file read, and file write capabilities. However, the manifest declares no permissions, creating a mismatch that can bypass user/admin expectations and weaken security review, especially because some commands may consume licenses, discover local installations, or modify the workspace.
