Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises and instructs shell-based system modification but does not declare corresponding permissions. This creates a transparency and trust problem: users or orchestrators may not realize the skill can execute privileged host commands affecting SSH, firewall, packages, and services. In a security-hardening skill, hidden shell capability is especially sensitive because it is expected to make broad system changes.
