Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises that it writes transcripts to local sibling .txt files, but its metadata declares no required permissions. That mismatch can cause an agent or user to authorize and invoke the skill without understanding that it will modify the filesystem, reducing transparency and consent around local file writes.
