Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to use local Python scripts, read and write workspace files, and reference a remote repository for provenance, which implies effective file, environment, and possible network capabilities. However, the skill declares no permissions or trust boundaries, creating a mismatch that can lead to over-privileged execution, accidental data exposure, or unsafe file operations without explicit user awareness or enforcement.
