Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill declares no permissions, yet its own documentation shows use of environment variables and home-directory filesystem access for vault discovery and sync. This creates an under-declared trust boundary: users may believe the skill is narrowly scoped while it can read configuration and act on paths derived from environment and user home locations.
