Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill describes capabilities that can read environment variables, access files, invoke shell commands, and make network requests, yet it declares no explicit permissions or guardrails. In this context, that is dangerous because the skill handles cloud credentials and sensitive ticket data; without declared permissions, a host agent may expose more capability than users expect, weakening consent and policy enforcement.
