Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill directs the agent to activate a virtual environment, execute Python scripts, perform network fetches, and write output files, yet no permissions are declared. This creates a capability transparency and policy-enforcement gap: an operator may believe the skill is low-risk text guidance when it actually invokes shell, network, and filesystem actions.
