Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises and relies on network access and file writes, but does not declare any permissions or trust boundaries for those capabilities. In an agent setting, this can lead to overbroad execution where the runner grants undeclared access to the filesystem, environment, or external URLs, making review and sandboxing harder and increasing the chance of data exposure or unintended writes.
