Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises executable behavior and includes shell-invocable setup and run commands, but it does not declare explicit permissions for shell/code execution. This weakens the security boundary because users and platforms cannot accurately assess what capabilities the skill needs before invocation, increasing the chance of unexpected command execution in a sensitive environment with AWS credentials present.
