Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill clearly instructs the user to run shell commands, install software, configure cron jobs, and invoke local scripts, yet it declares no permissions. This creates a transparency and governance problem: an agent or operator may treat the skill as lower-risk than it really is, despite it enabling command execution and persistent system changes.
