Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises executable shell scripts and a live external API backend but does not declare permissions or clearly constrain when those capabilities may be used. In an agent environment, hidden or undeclared shell/network behavior can lead to unexpected command execution or data exfiltration, especially if the model decides to invoke `check.sh`/`generate.sh` automatically based on user input.
