Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 96% confidence
- Finding
- The skill performs sensitive operations including shell execution, local file reads/writes, and outbound network access, but does not declare explicit permissions for those capabilities in a machine-enforceable way. This creates a governance gap: an agent platform or reviewer may under-estimate the skill's access, allowing execution in contexts where users did not clearly consent to filesystem, command, or network activity involving health data.
