Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises shell, network, and environment-dependent behavior but does not declare permissions. That creates a transparency and policy-enforcement gap: operators may approve the skill without realizing it can make network requests, run local commands, and access environment-derived context, increasing the chance of unintended data exposure or execution in sensitive environments.
