Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to use a bundled CLI that requires shell execution, reads environment/config secrets, performs network calls to a third-party API, and writes configuration files, yet no permissions are declared. That mismatch can cause the agent or platform to invoke capabilities without clear consent boundaries or policy review, increasing the risk of unintended secret use, outbound data transfer, and file modification.
